S2-062 (CVE-2021-31805) / S2-061 / S2-059 RCE
# CVE-2021-31805
## Remote code execution S2-062 (CVE-2021-31805) Due to Apache Struts2's incomplete fix for S2-061 (CVE-2020-17530), some tag attributes can still execute OGNL expressions, The vulnerability allows an attacker to construct malicious data to remotely execute arbitrary code.
### CVE_2021_31805_POC_EXP.py
#### POC
pocsuite -r CVE_2021_31805_POC_EXP.py -u url

#### EXP
pocsuite -r CVE_2021_31805_POC_EXP.py -u url --attack --command "[command]"

# 免责声明
## 此工具仅用于学习、研究和自查。不应将其用于非法目的。使用本工具产生的一切风险与我无关!
# Disclaimer
## This tool is for study, research, and self-examination only. It should not be used for illegal purposes. All risks arising from the use of this tool have nothing to do with me!
Log in to view the POC file snapshot cached by Shenlong Bot
Log in to view