
エクスプロイト作成者: R4v3nBl4ck end Pacman
このエクスプロイトは、Apache Struts2の脆弱性(CVE-2017-5638)を悪用し、Apacheサーバ上でリモートからコマンドを実行することを可能にします。
使い方:
$ sudo python Struts2_Shell001.py
*******************************************
* [!] Exploit Apache Struts2 {*}DEMO *
*******************************************
Code of Rvbk
[+] HOST con http(s)> 脆弱性のあるサイト
google dork to find sites that are using struts:) intitle:"Struts Problem Report" intext:"development mode is enabled."