Skip to content

Shakun8/CVE-2017-9805

Folders and files

NameName
Last commit message
Last commit date

Latest commit

 

History

3 Commits
 
 
 
 

Repository files navigation

CVE-2017-9805

CVE-2017-9805 POC

The issue comes from a lack of filtering on the deserialization class used by the REST plugin. Struts uses Xstream with a lot of filtering for deserialization in multiple places, however this filtering was not in place for the REST plugin.

About

CVE-2017-9805 POC

Resources

Stars

Watchers

Forks

Releases

No releases published

Packages

No packages published

Languages