Apache Struts ClassLoader Manipulation Remote Code Execution Exploit Update

This module exploits a vulnerability in Apache Struts. The specific vulnerability is in the ParametersInterceptor, which allows a direct manipulation of the ClassLoader and as a result an attacker can execute arbitrary Java code in the target machine.



This update adds support for Apache Struts 2.3.16, Windows (x86 and x64) and Linux (x64) platforms.
Exploit Type - Old
Exploits/Remote
Exploit Platform
Exploit Type
Product Name