
Proof-of-concept-Exploit für die Schwachstelle CVE-2019-0230 in Apache Struts 2 zur Remote-Codeausführung, die eine Befehlseinschleusung über manipulierte HTTP-Anfragen ermöglicht.
CVE-2019-0230 Exploit
Dies ist CVE-2019-0230 Exploit
python3 cve-2019-230.py <url or ip> <command>
Beispiel:
# python3 cve-2019-0230-poc.py pentest.com whoami
Testing pentest.com!
Command being passed for RCE: whoami
2020/10/22/