CVE-2019-0230
CRITICAL NUCLEIApache Struts 2.0.0-2.5.20 - Remote Code Execution via Forced Double OGNL Evaluation
Title source: llmExploitation Summary
EIP tracks 7 public exploits for CVE-2019-0230.
PoCs published by West Shepherd, ramoncjs3, PrinceFPF, including Metasploit module exploits/multi/http/struts2_multi_eval_ognl.
A Nuclei detection template is also available.
AI-analyzed exploit summary This exploit leverages CVE-2019-0230, a double OGNL evaluation vulnerability in Apache Struts 2.0.0 to 2.5.20, to achieve remote code execution (RCE) via a crafted multipart/form-data payload. The payload manipulates OGNL context to bypass security restrictions and execute arbitrary commands.
Description
Apache Struts 2.0.0 to 2.5.20 forced double OGNL evaluation, when evaluated on raw user input in tag attributes, may lead to remote code execution.
Exploits (7)
This exploit leverages CVE-2019-0230, a double OGNL evaluation vulnerability in Apache Struts 2.0.0 to 2.5.20, to achieve remote code execution (RCE) via a crafted multipart/form-data payload. The payload manipulates OGNL context to bypass security restrictions and execute arbitrary commands.
The repository contains only a README.md file with minimal information about CVE-2019-0230 and s2-059, lacking any exploit code or technical details.
This is a functional exploit PoC for CVE-2019-0230, a remote code execution vulnerability in Apache Struts2. It leverages OGNL injection via a maliciously crafted Content-Type header to execute arbitrary commands on the target system.
This repository contains a working PoC for CVE-2019-0230, an OGNL injection vulnerability in Apache Struts2. The exploit leverages Struts2's OGNL expression evaluation to execute arbitrary commands, demonstrated by launching 'calc.exe'.
This is a functional exploit for CVE-2019-0230, a remote code execution vulnerability in Apache Struts2. It leverages OGNL injection to execute arbitrary commands via a crafted payload sent to the target endpoint.
This repository contains a functional PoC for CVE-2019-0230, a remote code execution vulnerability in Apache Struts2. The exploit leverages OGNL injection to execute arbitrary commands, including reverse shells, on vulnerable systems.
This Metasploit module exploits CVE-2019-0230 and CVE-2020-17530 in Apache Struts 2 by leveraging forced OGNL evaluation in tag attributes, leading to remote code execution. It supports both direct command execution and staged payloads via crafted HTTP requests.
Nuclei Templates (1)
http.html:"apache struts" || http.title:"struts2 showcase" || http.html:"struts problem report"
body="struts problem report" || title="struts2 showcase" || body="apache struts"
References (9)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H