
익스플로잇 제작자: R4v3nBl4ck 그리고 Pacman
이 익스플로잇은 Apache Struts2 취약점(CVE-2017-5638)을 악용하여 원격으로 Apache 서버에서 명령을 실행할 수 있게 합니다.
사용 방법:
$ sudo python Struts2_Shell001.py
*******************************************
* [!] Exploit Apache Struts2 {*}DEMO *
*******************************************
Code of Rvbk
[+] HOST con http(s)> 취약점이 있는 사이트
struts를 사용하는 사이트를 찾는 google dork:) intitle:"Struts Problem Report" intext:"development mode is enabled."