Monday, August 19, 2013

Apache Struts vulnerabilities

"Chinese hackers are using an automated tool to exploit known vulnerabilities in Apache Struts, in order to install backdoors on servers hosting applications developed with the framework.
Apache Struts is a popular open-source framework for developing Java-based Web applications that's maintained by the Apache Software Foundation."

when I was looking for details for the Apache vulnerabilities , I found this database.
http://www.cvedetails.com/vulnerability-list/vendor_id-45/product_id-6117/Apache-Struts.html

Insecure feeling !!

No comments: