Apache Struts Jakarta Remote Code Execution (CVE-2017-5638) Detection with Nessus
by Lucas Tamagna-Darr on March 14, 2017
A remote code execution vulnerability (CVE-2017-5638) in the Jakarta Multipart Parser in certain versions of the Apache Struts framework can enable a remote attacker to run arbitrary commands on the web server. Since its initial disclosure, this vulnerability has received significant attention, and is reportedly exploited in the wild. Public exploits are also available for this vulnerability.