
Python proof-of-concept exploit for Apache Struts2 RCE vulnerability CVE-2017-5638, demonstrating remote code execution via crafted Content-Type header.
This repo contains a working python example demonstrating the RCE capabilities of CVE 2017-5638. Also for reference is included the Struts Showcase WAR file.