Vulnerable Apache Struts2 image to demo CVE-2018-11776
443
Apache Struts OGNL Expression Remote Command Execution Vulnerability (CVE-2018-11776)
vim /usr/local/tomcat/webapps/ROOT/WEB-INF/classes/struts.xml
Add the following string inside :
Then add this action inside : date.action
Once done, restart the container
Content type
Image
Digest
Size
168.6 MB
Last updated
almost 8 years ago
docker pull mawinkler/cve-2018-11776