CVE-2018-11776 | Apache Struts up to 2.3.34/2.5.16 Namespace input validation (EDB-45262 / Nessus ID 112064)
A vulnerability classified as critical was found in Apache Struts up to 2.3.34/2.5.16. Affected is an unknown function of the component Namespace Handler. The manipulation results in improper input validation.
This vulnerability is cataloged as CVE-2018-11776. The attack may be launched remotely. Furthermore, there is an exploit available.
Upgrading the affected component is advised.