CVE-2019-0230(S2-059)
0x00.漏洞简述
Apache Struts 2.0.0 to 2.5.20 forced double OGNL evaluation, when evaluated on raw user input in tag attributes, may lead to remote code execution.
Apache Struts 2.0.0到2.5.20强制执行双重OGNL计算,当对原始用户输入的标记属性进行计算时,可能会导致远程代码执行。