Just a terrible script I wrote in Python3 to fuzz and if desired, exploit via Metasploit: CVE-2017-9805 RCE for CTF's or whatever in accordance with the thugcrowd DWTFYW Public License I stole from those cool cats =)
UbuntuStrike/CVE-2017-9805-Apache-Struts-Fuzz-N-Sploit
A script to Fuzz and and exploit Apache struts CVE-2017-9805
PythonWTFPL