Apache Struts 2 Default Method Redirection Vulnerability

Apache Struts 2 Default Method Redirection Vulnerability

CVE-2016-4431 · MEDIUM Severity

AV:N/AC:L/AU:N/C:N/I:P/A:N

Apache Struts 2 2.3.20 through 2.3.28.1 allows remote attackers to bypass intended access restrictions and conduct redirection attacks by leveraging a default method.

Learn more about our Web Application Penetration Testing UK.