CVE-2019-0230: Apache Struts Potential Remote Code Execution Vulnerability
by Tenable Security Response Team on August 14, 2020
Apache published two security bulletins to address a potential remote code execution vulnerability and a denial of service vulnerability. Public proof of concept code is available.
Background
On August 13, Apache published security bulletins to address two vulnerabilities in Apache Struts version 2. Apache Struts is an open source model-view-controller (MVC) framework used to create Java web applications.