.. / CVE-2017-12611

Exploit for Apache Struts2 S2-053 - Remote Code Execution (CVE-2017-12611)

Description:

Apache Struts 2.0.0 through 2.3.33 and 2.5 through 2.5.10.1 uses an unintentional expression in a Freemarker tag instead of string literals, which makes it susceptible to remote code execution attacks.

Nuclei Template

View the template here CVE-2017-12611.yaml

Validate with Nuclei

echo "$URL" | nuclei -t ~/nuclei-templates/http/cves/2017/CVE-2017-12611.yaml
Copy

References:

https://nvd.nist.gov/vuln/detail/CVE-2017-12611
https://kb.netapp.com/support/s/article/ka51A000000CgttQAC/NTAP-20170911-0001
http://www.oracle.com/technetwork/security-advisory/alert-cve-2017-9805-3889403.html
http://www.arubanetworks.com/assets/alert/ARUBA-PSA-2017-003.txt
https://struts.apache.org/docs/s2-053.html