A Struts2 2.3.13 application, vulnerable to S2-012 (CVE-2013-1965): the user action's redirect result contains ${name}, so a name submitted as %{...} is evaluated as an OGNL expression, which runs commands.
Pas commencéDockercommit 490a5a7x86_64 · aarch64Secret
Exploit S2-012 to run commands on the Struts2 server and get a shell.
Le brief de ce lab se trouve dans son dépôt.