Tag: CVE-2017-5638
You are here: Home \ CVE-2017-5638
The Apache Software Foundation released a patch on Tuesday for a critical vulnerability impacting all versions of Struts since 2008.
While probes looking for vulnerable Apache Struts 2 deployments continue, malicious traffic has tapered off, researchers at Rapid7 said.
Apache administrators are urged to immediately upgrade the Struts 2 web application framework to address a remote code execution flaw under public attack.