CVE-2016-3090
The TextParseUtil.translateVariables method in Apache Struts 2.x before 2.3.20 allows remote attackers to execute arbitr
The TextParseUtil.translateVariables method in Apache Struts 2.x before 2.3.20 allows remote attackers to execute arbitrary code via a crafted OGNL expression with ANTLR tooling.
HIGH · CVSS 8.8
EPSS 0.02195
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0