Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
OracleOTM — Python tool for exploiting CVE-2021-35616 | Kitploit
Tools/GitHubGitHub/ofirhamam/oracleotm
Vulnerability AnalysisExploitationWeb Application ExploitationInformation GatheringPenetration TestingDatabase Security
GitHubofirhamam/oracleotm

OracleOTM

Python tool for exploiting CVE-2021-35616

View Repository
11124 years agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

OracleOTM

Python tool for exploiting CVE-2021-35616

The script works in modules, which I implemented in the following order:

► Username enumeration

► Search for default credentials

► Run an SQL query using DBXML servlet

► Full exploitation and JSP execution

The syntax of the script is as follows:

.\OracleOTM.py {module} {host TXT file} {additional parameters}

Username enumeration: .\OracleOTM.py enum {hosts TXT file} -u users.txt

Search for default credentials: .\OracleOTM.py default {hosts TXT file}

Run an SQL query using DBXML servlet: .\OracleOTM.py query {hosts TXT file} -uq EBS.ADMIN -pq Aa123123 -q "select 1 from dual"

I also prepared some predefined queries that I found useful; you can access them directly, as follows:

.\OracleOTM.py query {hosts TXT file} -uq EBS.ADMIN -pq Aa123123 -q os

root@kitploit:~
OS – Extract the server’s OS 

Osuser – Extract the OS user running the DB

Hostname – DB server host name 

Hostip – DB server IP address 

Passwords – Extracts the OTM users and their hashed passwords

 Oraversion – The DB version 

Dbusershash – The DB users’ password hashes

Dbfileslocation – The location of the DB files in the OS

Full exploitation and JSP execution: .\OracleOTM.py exploit {hosts TXT file} -lu EBS.ADMIN -lp Aa123123 -pf "C:\Users\user\Desktop\Header_notepad.jspx"

Download Tool