CVE-2021-31805
CRITICAL 9.8EPSS 85.4%
The fix issued for CVE-2020-17530 was incomplete. So from Apache Struts 2.0.0 to 2.5.29, still some of the tag’s attributes could perform a double evaluation if a developer applied forced OGNL evaluation by using the %{...} syntax. Using forced OGNL evaluation on untrusted user input can lead to a Remote Code Execution and security degradation.
- CVSS v3.1
- 9.8 CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - CVSS v3.1
- 9.8 CRITICAL
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - CVSS v2.0
- 7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P - EPSS
- 85.43% chance of exploitation in the next 30 days, 100th percentile
- Nuclei
- critical · CWE-917
- Published
- 2022-04-12
- Updated
- 2024-08-03
Proof-of-concept exploits (10)
- Axx8/Struts2_S2-062_CVE-2021-3180511★ · 2022-04-18
- JordanANDJohn/CVE-2021-31805-POC1★ · 2022-04-18
- SecNN/Struts2_S2-062_CVE-2021-3180511★ · 2022-04-18
- Wrin9/CVE-2021-3180537★ · 2022-04-15
- aeyesec/CVE-2021-318055★ · 2022-04-22
- fleabane1/CVE-2021-31805-POC1★ · 2022-04-18
- jax7sec/S2-06223★ · 2022-04-15
- liang2kl/iot-exploits3★ · 2023-07-26
- nth347/CVE-2021-318050★ · 2023-08-04
- z92g/CVE-2021-318055★ · 2022-07-23