Update CVE-2017-9791.yaml

patch-1
Prince Chaddha 2022-05-12 16:47:00 +05:30 committed by GitHub
parent 3d9d8ed681
commit 67635d8bb1
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 3 additions and 2 deletions

View File

@ -13,7 +13,7 @@ info:
cvss-score: 9.8
cve-id: CVE-2017-9791
cwe-id: CWE-20
tags: cve,cve2017,apache,rce
tags: cve,cve2017,apache,rce,struts
requests:
- method: POST
@ -27,11 +27,12 @@ requests:
matchers-condition: and
matchers:
- type: word
part: header
words:
- "Content-Type: text/html"
part: header
- type: regex
part: body
regex:
- "root:.*:0:0:"
condition: and