CVE-2012-0394 | Apache Struts up to 2.2.3 DebuggingInterceptor code injection (EDB-18329 / Nessus ID 207697)
A vulnerability classified as critical was found in Apache Struts. This vulnerability affects unknown code of the component DebuggingInterceptor. The manipulation leads to code injection.
This vulnerability was named CVE-2012-0394. The attack can be initiated remotely. Furthermore, there is an exploit available.
The real existence of this vulnerability is still doubted at the moment.
It is recommended to upgrade the affected component.