RnD Research Lab

Cyber Security => IT News => Topic started by: ixsky on

Title: New Critical RCE Vulnerability Discovered in Apache Struts 2 - Patch Now
Post by: ixsky on
New Critical RCE Vulnerability Discovered in Apache Struts 2 - Patch Now

Apache has released a security advisory warning of a critical security flaw in the Struts 2 open-source web application framework that could result in remote code execution.
Tracked as CVE-2023-50164, the vulnerability is rooted in a flawed "file upload logic" that could enable unauthorized path traversal and could be exploited under the circumstances to upload a malicious file

Source: New Critical RCE Vulnerability Discovered in Apache Struts 2 - Patch Now (https://thehackernews.com/2023/12/new-critical-rce-vulnerability.html)