
Proof-of-concept exploit script for CVE-2020-17530 (Struts2 S2-061 FreeMarker RCE). Executes arbitrary commands on vulnerable Apache Struts2 servers via crafted FreeMarker template injection.
(cve-2020-17530) struts2_s2-061 freemarker_RCE testscript
python freemarker_RCE_struts2_s2-061.py <dst_ip> <-s ; optional - TLS>