An exploit for Apache Struts CVE-2017-5638
-
Updated
May 21, 2018 - Python
An exploit for Apache Struts CVE-2017-5638
Struts2 S2-045-Nmap NSE script
Demonstrate how usage of the Java Security Manager can prevent Remote Code Execution (RCE) exploits.
Example PoC Code for CVE-2017-5638 | Apache Struts Exploit
Originally CVE-2017-5638, but now extended to include CVE-2017-9791, referencing new repo for CVE-2018-11776
This is a sort of Java porting of the Python exploit at: https://www.exploit-db.com/exploits/41570/.
S2-046|S2-045: Struts 2 Remote Code Execution vulnerability(CVE-2017-5638)
Struts2Scanner is a vulnerability scanner to find out if a target endpoint is vulnerable to Remote Code Execution.
This script is intended to validate Apache Struts 2 vulnerability (CVE-2017-5638), AKA Struts-Shock.
Detection of Vulnerabilities with Auditbeat
Add a description, image, and links to the cve-2017-5638 topic page so that developers can more easily learn about it.
To associate your repository with the cve-2017-5638 topic, visit your repo's landing page and select "manage topics."