[ https://issues.apache.org/jira/browse/WW-4063?page=com.atlassian.jira.plugin.system.issuetabpanels:all-tabpanel ]
Rene Gielen closed WW-4063. --------------------------- Resolution: Fixed > Remote code execution in Struts2 via expression language execution > ------------------------------------------------------------------ > > Key: WW-4063 > URL: https://issues.apache.org/jira/browse/WW-4063 > Project: Struts 2 > Issue Type: Bug > Components: Expression Language > Affects Versions: 2.3.14.1 > Environment: Mac OS X 10.7 > Reporter: Coverity Security Research Laboratory > Assignee: Rene Gielen > Labels: security > Fix For: 2.3.14.2 > > > Struts2 under certain configurations is vulnerable to remote code execution > via the interpretation of EL and OGNL. Since this is I'm assuming a publicly > accessible issue, please let me know if I should add a reproducer to this > issue or if I should communicate this reproducer though another mechanism. -- This message is automatically generated by JIRA. If you think it was sent incorrectly, please contact your JIRA administrators For more information on JIRA, see: http://www.atlassian.com/software/jira