pimps / CVE-2017-1000486

Primefaces <= 5.2.21, 5.3.8 or 6.0 - Remote Code Execution Exploit

Geek Repo:Geek Repo

Github PK Tool:Github PK Tool

thank you for your efforts

sovereignk opened this issue · comments

Hi, ı have been used this exploit for 1 year. I would like to thank you, i earned 3K bounty by using your script:)
I saw you upload new script name paddingoracle.py. Could you please update readme.txt for new script.
Second I dit not manage to exploit primefaces 6.0 versions. Is it my mistake or common problem?
I apreciated for your efforts.

commented

paddingoracle.py is just to make the exploit work with padding oracle. its already built in on the exploit. use -h to see examples of how to use it. closing this issue.