CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. It affects Apache. Its EPSS score suggests a 87.1% probability of exploitation in the next 30 days.
CVE
CVE-2017-12611
Severity
CRITICAL
CVSS
9.8
EPSS
87.12%
Apache
Original NVD Description
In Apache Struts 2.0.0 through 2.3.33 and 2.5 through 2.5.10.1, using an unintentional expression in a Freemarker tag instead of string literals can lead to a RCE attack.
Related CVEs
Other vulnerabilities affecting the same vendor(s)