pwntester
5 exploits
Active since Oct 2011
Spring Framework 3.0.0-3.0.5 & Spring Security 2.0.0-2.0.6, 3.0.0-3.0.5 - RCE via Untrusted Deserialization
44 stars
Apache Struts 2.0.0-2.3.16.1 - Remote Code Execution via Class Parameter Manipulation
Apache Struts 2.0.0-2.3.16.1 and struts2-core < 2.3.20 - Remote Code Execution via ParametersInterceptor
dozer < 5.5.1 - Remote Code Execution via Untrusted Deserialization
CVSS 9.8
Apache Struts 2.0.0-2.3.16.1 and struts2-core < 2.3.20 - Remote Code Execution via CookieInterceptor