Fixed Intel

CISA Known Exploited Vulnerability

This vulnerability is actively exploited in the wild and listed in the CISA Known Exploited Vulnerabilities catalog.

Remediation Deadline: Aug 10, 2022

High
CISA KEV

CVE-2017-9791

ApacheStruts 1

The Struts 1 plugin in Apache Struts might allow remote code execution via a malicious field value passed in a raw message to the ActionMessage.

Required Action

https://nvd.nist.gov/vuln/detail/CVE-2017-9791

Vulnerability Overview

Severity
High
CISA KEV
Yes
Ransomware
Unknown
Published
Feb 10, 2022
KEV Added
Feb 10, 2022
Due Date
Aug 10, 2022
Related Articles
0

Vendor

Apache

Struts 1