CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. It affects Apache. Its EPSS score suggests a 16.6% probability of exploitation in the next 30 days. It may be remotely exploitable.
CVE
CVE-2016-4438
Severity
CRITICAL
CVSS
9.8
EPSS
16.61%
Apache
Original NVD Description
The REST plugin in Apache Struts 2 2.3.19 through 2.3.28.1 allows remote attackers to execute arbitrary code via a crafted expression.