Demo app of THAT data broker's security breach# CVE-2017-5638
Demo app of, yes, __that__ data broker's security breach. Includes exploit code.
# Basic usage (launch)
```shell
mvn jetty:run
```
Then go to [http://localhost:8080/basic-struts/index.action](http://localhost:8080/basic-struts/index.action).
You should see the __Welcome to Struts 2!__ message.
# Vulnerability scan
```shell
mvn site
```
# Acknowledgements
Exploit code adapted from [immun.io's repo](https://github.com/immunio/apache-struts2-CVE-2017-5638).Log in to view the POC file snapshot cached by Shenlong Bot
Log in to view