{"id":13845248,"url":"https://github.com/li8u99/Seeyon_exp_plus","last_synced_at":"2025-07-12T01:32:21.419Z","repository":{"id":113079067,"uuid":"450017941","full_name":"li8u99/Seeyon_exp_plus","owner":"li8u99","description":"seeyon致远OA全漏洞检测与利用","archived":false,"fork":false,"pushed_at":"2022-04-11T06:27:34.000Z","size":25,"stargazers_count":57,"open_issues_count":0,"forks_count":10,"subscribers_count":3,"default_branch":"main","last_synced_at":"2024-08-05T17:44:09.283Z","etag":null,"topics":[],"latest_commit_sha":null,"homepage":null,"language":"Python","has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":null,"status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/li8u99.png","metadata":{"files":{"readme":"README.md","changelog":null,"contributing":null,"funding":null,"license":null,"code_of_conduct":null,"threat_model":null,"audit":null,"citation":null,"codeowners":null,"security":null,"support":null,"governance":null,"roadmap":null,"authors":null,"dei":null}},"created_at":"2022-01-20T08:41:25.000Z","updated_at":"2024-01-30T19:33:17.000Z","dependencies_parsed_at":"2023-07-03T06:26:23.792Z","dependency_job_id":null,"html_url":"https://github.com/li8u99/Seeyon_exp_plus","commit_stats":null,"previous_names":[],"tags_count":0,"template":false,"template_full_name":null,"repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/li8u99%2FSeeyon_exp_plus","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/li8u99%2FSeeyon_exp_plus/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/li8u99%2FSeeyon_exp_plus/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/li8u99%2FSeeyon_exp_plus/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/li8u99","download_url":"https://codeload.github.com/li8u99/Seeyon_exp_plus/tar.gz/refs/heads/main","host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":225784333,"owners_count":17523622,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2022-07-04T15:15:14.044Z","host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"}},"keywords":[],"created_at":"2024-08-04T17:03:17.509Z","updated_at":"2024-11-21T18:30:57.847Z","avatar_url":"https://github.com/li8u99.png","language":"Python","funding_links":[],"categories":["Python"],"sub_categories":[],"readme":"![image.png](https://cdn.nlark.com/yuque/0/2021/png/603531/1622620222886-f40c9762-35e8-4547-9004-ecd3d8e52294.png#align=left\u0026display=inline\u0026height=178\u0026margin=%5Bobject%20Object%5D\u0026name=image.png\u0026originHeight=356\u0026originWidth=907\u0026size=18656\u0026status=done\u0026style=none\u0026width=453.5)\n\n偶然发现Summer表哥的这个致远OA全版本检测脚本 https://github.com/Summer177/seeyon_exp 这类专项的检测相比整个扫描器来说更加方便，可以更好的开展漏洞检测。\n在之前的基础上结合日常使用进行了优化修改。\n\n# 更新日志\n2022.01.20：\u003c/br\u003e\n1、修复致远OA A8 htmlofficeservlet RCE漏洞原验证方式失效的问题。\n\n\n\n# 工具介绍\n**致远OA全漏洞检查与利用工具plus版，收录漏洞如下：**\n```\n信息泄露：\n致远OA A8 状态监控页面信息泄露\n致远OA A6 initDataAssess.jsp 用户敏感信息泄露\n致远OA A6 createMysql.jsp 数据库敏感信息泄露\n致远OA A6 DownExcelBeanServlet 用户敏感信息泄露\n致远OA getSessionList.jsp Session泄漏漏洞\n\nSQL注入：\n致远OA A6 setextno.jsp SQL注入漏洞\n致远OA A6 test.jsp SQL注入漏洞\n\n文件上传：\n致远OA ajax.do 登录绕过\u0026任意文件上传\n致远OA Session泄露 任意文件上传漏洞\n\n任意文件下载：\n致远OA webmail.do任意文件下载\n```\n**首次使用请安装依赖：**\n```\npip3 install -r requirements.txt\n```\n**使用方法：**\n```\nUsage:\npython3 seeyon_exp.py -u url              #漏洞检测\npython3 seeyon_exp.py -u url --att\t\t\t\t#漏洞检测+getshell\npython3 seeyon_exp.py -f url.txt          #批量漏洞检查\npython3 seeyon_exp.py -f url.txt --att\t\t#批量漏洞检测+getshell\n\nOptions:\n  -h, --help            show this help message and exit\n  -u URL, --url=URL     target url\n  -f FILE, --file=FILE  url file\n  --att                 getshell\n```\n```\npython3 seeyon_exp.py -u url\n```\n![image.png](https://cdn.nlark.com/yuque/0/2021/png/603531/1622621523227-5ef552da-4bf2-4a98-ba4c-0c16292dcc8d.png#align=left\u0026display=inline\u0026height=463\u0026margin=%5Bobject%20Object%5D\u0026name=image.png\u0026originHeight=925\u0026originWidth=1219\u0026size=140406\u0026status=done\u0026style=none\u0026width=609.5)\n```\npython3 seeyon_exp.py -u url  --att\n```\n![image.png](https://cdn.nlark.com/yuque/0/2021/png/603531/1622625176126-20a05004-b3e4-4188-acbf-c307f661fff5.png#align=left\u0026display=inline\u0026height=462\u0026margin=%5Bobject%20Object%5D\u0026name=image.png\u0026originHeight=924\u0026originWidth=1218\u0026size=138710\u0026status=done\u0026style=none\u0026width=609)\n\u003c/br\u003e\n\u003c/br\u003e\n**默认使用冰蝎3的webshell，密码为rebeyond**\n\u003c/br\u003e\n\u003c/br\u003e\n**扫码结果保存为result.txt，使用批量扫描时，建议先筛选出存活url**\n\u003c/br\u003e\n\u003c/br\u003e\n**声明：仅用于授权测试，请勿用于非法用途，违者后果自负！**\n\u003c/br\u003e\n\u003c/br\u003e\n参考链接：\n```\nhttps://github.com/PeiQi0/PeiQi-WIKI-POC/tree/PeiQi/PeiQi_Wiki/OA%E4%BA%A7%E5%93%81%E6%BC%8F%E6%B4%9E/%E8%87%B4%E8%BF%9COA\n```\n\n","project_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fli8u99%2FSeeyon_exp_plus","html_url":"https://awesome.ecosyste.ms/projects/github.com%2Fli8u99%2FSeeyon_exp_plus","lists_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fli8u99%2FSeeyon_exp_plus/lists"}