CVE-2017-12611
In Apache Struts 2.0.0 through 2.3.33 and 2.5 through 2.5.10.1, using an unintentional expression in a Freemarker tag instead of string literals can lead to a RCE attack.
- Affected products
- Apache Struts
- Apache Struts
- = 2.0.1, 2.0.2, 2.0.3, 2.0.4, 2.0.5, 2.0.6, 2.0.7, 2.0.8, 2.0.9, 2.0.10, 2.0.11, 2.0.11.1, 2.0.11.2, 2.0.12, 2.0.13, 2.0.14, 2.1.0, 2.1.1, 2.1.2, 2.1.3, 2.1.4, 2.1.5, 2.1.6, 2.1.8, 2.1.8.1, 2.2.1, 2.2.1.1, 2.2.3, 2.2.3.1, 2.3.1, 2.3.1.1, 2.3.1.2, 2.3.3, 2.3.4, 2.3.4.1, 2.3.5, 2.3.6, 2.3.7, 2.3.8, 2.3.9
- Fix
- Available
- CVSS 3.0
- 9.8 CRITICAL
- EPSS
- 87.1% (100th percentile)
- Weakness
- CWE-20
- NVD status
- Modified
- Published
- 2017-09-20
CVE-2017-12611 at NVD
9 known exploits for CVE-2017-12611
Proof-of-concept code and exploit modules indexed by Sploitus
S2-053-CVE-2017-12611
CVE-2017-12611_Exploit
CVE-2017-12611
Apache Struts 2 Freemarker Tag Handling RCE
Apache Struts 2.0.1 < 2.3.33 / 2.5 < 2.5.10 - Arbitrary Code Execution Exploit
Apache Struts 2.0.1 < 2.3.33 / 2.5 < 2.5.10 - Arbitrary Code Execution
Exploit for Improper Input Validation in Apache Struts
Apache Struts2 S2-053 (CVE-2017-12611)
Exploit for OS Command Injection in Gnu Bash