Junglewise Threat Intelligence

CVE-2016-4438: Arbitrary code execution in Apache Struts 2

CVE-2016-4438 · Severity: low · CVSS 3 · Published 2022-05-14

Technologies: org.apache.struts:struts2-core (Maven), org.apache.struts:struts2-rest-plugin (Maven). Vendors: Maven.

Executive brief

Arbitrary code execution in Apache Struts 2

Affected products

  • Maven org.apache.struts:struts2-core
  • Maven org.apache.struts:struts2-rest-plugin

Related threats