You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
I would like to start implementing a plugin to detect the vulnerability described in S2-067. This vulnerability has been addressed by upgrading to Struts 6.4.0 or greater and migrating to the new file upload mechanism.
The vulnerability has been assigned CVE IDCVE-2024-53677.
The text was updated successfully, but these errors were encountered:
This generally seems like something that we would be interested in. But transforming a file upload generically into an RCE can be challenging. Additionally, it can pause the issue of deleting the file afterwards.
Could you provide more information on how you would write a detector for this?
Hello,
I would like to start implementing a plugin to detect the vulnerability described in S2-067. This vulnerability has been addressed by upgrading to Struts 6.4.0 or greater and migrating to the new file upload mechanism.
The vulnerability has been assigned CVE ID CVE-2024-53677.
The text was updated successfully, but these errors were encountered: