Known CVE
Apache Struts 2 - DefaultActionMapper Prefixes OGNL Code Execution
In Struts 2 before 2.3.15.1 the information following "action:", "redirect:", or "redirectAction:" is not properly sanitized and will be evaluated as an OGNL expression against the value stack. This introduces the possibility to inject server side code.
CVE-2013-2251
Critical2013CVSS 9.3CWE-20
cve2013 · rce · struts · apache · ognl · kev · vkev · vuln
Verified scans run this check after you prove you own the site.
All known CVEsView the checks catalogNational Vulnerability Database
Scan a website