Apache Struts CVE-2016-3087 Input Validation Bypass Vulnerability

description-logoDescription

It is possible to pass a malicious expression which can be used to execute arbitrary code on server side when Dynamic Method Invocation is enabled when using the REST Plugin.

affected-products-logoAffected Applications

Apache Struts

CVE References

CVE-2016-3087