CVE-2023-50164
published 2023-12-07CVE-2023-50164: An attacker can manipulate file upload params to enable paths traversal and under some circumstances this can lead to uploading a malicious file which can be…
PriorityP191critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
ITWEXPLOITVulnCheck KEVInitial access
Exploited in the wild
EPSS
80.82%
99.6th percentile
An attacker can manipulate file upload params to enable paths traversal and under some circumstances this can lead to uploading a malicious file which can be used to perform Remote Code Execution.
Users are recommended to upgrade to versions Struts 2.5.33 or Struts 6.3.0.2 or greater to fix this issue.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | struts | >= 2.0.0 < 2.5.33 | 2.5.33 |
| apache | struts | >= 6.0.0 < 6.3.0.2 | 6.3.0.2 |
| apache_software_foundation | apache_struts | 2.0.0 – 2.5.32 | — |
| apache_software_foundation | apache_struts | 6.0.0 – 6.3.0.1 | — |
Detection & IOCsextracted from sources · hover to see the quote
- →Detect path traversal characters in the filename field of multipart upload requests targeting Apache Struts; the bug bypasses getCanonicalName() allowing traversal payloads to persist in the final filename via getOriginalName(). ↗
- →Alert on HTTP requests where a file upload parameter appears twice with differing case (parameter pollution), as the lowercased duplicate can override the internal file name variable to enable exploitation. ↗
- →Watch for oversized upload requests that trigger the 'struts.messages.upload.error.parameter.too.long' error, which may be used to leave temporary files on disk for persistence. ↗
- ·Exploitation requires the target application to use Apache Struts file upload functionality; not all Struts deployments expose this feature, making exploitation context-dependent. ↗
- ·Exploiting this vulnerability at scale is significantly more difficult than CVE-2017-5638 due to the lack of straightforward scanning and exploitation capabilities. ↗
- ·Struts is often a deep-embedded dependency not present in default locations, limiting the effectiveness of traditional vulnerability scanners in detecting affected instances. ↗
CVSS provenance
nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
vulncheck9.8CRITICAL
vendor_cisco9.8CRITICAL
vendor_oracle9.8CRITICAL
vendor_redhat9.8CRITICAL
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
Apache Struts vulnerable to path traversal
osv·2023-12-07
CVE-2023-50164 [CRITICAL] Apache Struts vulnerable to path traversal
Apache Struts vulnerable to path traversal
An attacker can manipulate file upload params to enable paths traversal and under some circumstances this can lead to uploading a malicious file which can be used to perform Remote Code Execution.
Users are recommended to upgrade to versions Struts 2.5.33 or Struts 6.3.0.2 or greater to fix this issue.
GHSA
Apache Struts vulnerable to path traversal
ghsa·2023-12-07
CVE-2023-50164 [CRITICAL] CWE-552 Apache Struts vulnerable to path traversal
Apache Struts vulnerable to path traversal
An attacker can manipulate file upload params to enable paths traversal and under some circumstances this can lead to uploading a malicious file which can be used to perform Remote Code Execution.
Users are recommended to upgrade to versions Struts 2.5.33 or Struts 6.3.0.2 or greater to fix this issue.
VulnCheck
Apache Struts Files or Directories Accessible to External Parties
vulncheck·2023·CVSS 9.8
CVE-2023-50164 [CRITICAL] Apache Struts Files or Directories Accessible to External Parties
Apache Struts Files or Directories Accessible to External Parties
An attacker can manipulate file upload params to enable paths traversal and under some circumstances this can lead to uploading a malicious file which can be used to perform Remote Code Execution.
Users are recommended to upgrade to versions Struts 2.5.33 or Struts 6.3.0.2 or greater to fix this issue.
Affected: Apache Struts
Required Action: Apply remediations or mitigations per vendor instructions or discontinue use of the product if remediation or mitigations are unavailable.
Exploitation References: https://www.sentinelone.com/resources/watchtower-end-of-year-report-2023/; https://blog.cloudflare.com/application-security-report-2024-update; https://go.catonetworks.com/rs/245-RJK-441/images/CATO_CTRL_Report_Q3_2024.pd
Oracle
Oracle Oracle Communications Risk Matrix: CMP (Apache Struts) — CVE-2023-50164
vendor_oracle·2024-01-15·CVSS 9.8
CVE-2023-50164 [CRITICAL] Oracle Oracle Communications Risk Matrix: CMP (Apache Struts) — CVE-2023-50164
Oracle Oracle Communications Risk Matrix: CMP (Apache Struts) vulnerability
CVE: CVE-2023-50164
CVSS: 9.8
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpujan2024 (JAN 2024)
Cisco
Apache Struts Vulnerability Affecting Cisco Products: December 2023
vendor_cisco·2023-12-12·CVSS 9.8
CVE-2023-50164 [CRITICAL] CWE-552 Apache Struts Vulnerability Affecting Cisco Products: December 2023
Apache Struts Vulnerability Affecting Cisco Products: December 2023
On December 7, 2023, the following vulnerability in Apache Struts was disclosed:
CVE-2023-50164: An attacker can manipulate file upload params to enable paths traversal and under some circumstances this can lead to uploading a malicious file which can be used to perform Remote Code Execution.
For a description of this vulnerability, see the Apache Software Foundation Security Bulletin.
This advisory is available at the following link: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-struts-C2kCMkmT
Red Hat
Struts: File upload component had a directory traversal vulnerability
vendor_redhat·2023-12-07·CVSS 9.8
CVE-2023-50164 [CRITICAL] CWE-552 Struts: File upload component had a directory traversal vulnerability
Struts: File upload component had a directory traversal vulnerability
An attacker can manipulate file upload params to enable paths traversal and under some circumstances this can lead to uploading a malicious file which can be used to perform Remote Code Execution.
Users are recommended to upgrade to versions Struts 2.5.33 or Struts 6.3.0.2 or greater to fix this issue.
A flaw was found in Apache Struts. Affected versions of this package are vulnerable to Remote Code Execution (RCE) via manipulation of file upload parameters that enable path traversal. Under certain conditions, uploading a malicious file is possible, which may then be executed on the server.
Package: org.apache.struts-struts-core (A-MQ Clients 2) - Not affected
Package: org.apache.struts-struts-core (Migration Toolkit
Cisco
Apache Struts Vulnerability Affecting Cisco Products: December 2023
vendor_cisco·CVSS 3.1
CVE-2023-50164 Apache Struts Vulnerability Affecting Cisco Products: December 2023
CVE-2023-50164: Apache Struts Vulnerability Affecting Cisco Products: December 2023
On December 7, 2023, the following vulnerability in Apache Struts was disclosed: CVE-2023-50164: An attacker can manipulate file upload params to enable paths traversal and under some circumstances this can lead to uploading a malicious file which can be used to perform Remote Code Execution. For a description of this vulnerability, see the Apache Software Foundation Security Bulletin . This advisory is available at the following link: https://sec.cloudapps.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-struts-C2kCMkmT
CVSS: 3.1
CWE: CWE-552, CWE-552
Bug IDs: CSCwi45131, CSCwi45131
Suricata
ET WEB_SPECIFIC_APPS Apache Struts2 uploadFileName Directory Traversal Attempt (CVE-2023-50164) M2
suricata·2023-12-12·CVSS 9.8
CVE-2023-50164 [CRITICAL] ET WEB_SPECIFIC_APPS Apache Struts2 uploadFileName Directory Traversal Attempt (CVE-2023-50164) M2
ET WEB_SPECIFIC_APPS Apache Struts2 uploadFileName Directory Traversal Attempt (CVE-2023-50164) M2
Rule: alert http any any -> $HOME_NET any (msg:"ET WEB_SPECIFIC_APPS Apache Struts2 uploadFileName Directory Traversal Attempt (CVE-2023-50164) M2"; flow:established,to_server; http.method; content:"POST"; http.uri; content:"/upload.action"; content:"uploadFileName|3d|"; nocase; fast_pattern; pcre:"/^(\x2e\x2e\x2f|\x252e\x252e\x252f)/Ri"; reference:cve,2023-50164; classtype:attempted-admin; sid:2049668; rev:2; metadata:affected_product Apache_Struts2, created_at 2023_12_12, cve CVE_2023_50164, deployment Perimeter, deployment Internal, confidence High, signature_severity Major, tag Description_Generated_By_Proofpoint_Nexus, updated_at 2024_11_26, mitre_tactic_id TA0007, mitre_tactic_name Dis
Suricata
ET WEB_SPECIFIC_APPS Apache Struts2 uploadFileName Directory Traversal Attempt (CVE-2023-50164) M1
suricata·2023-12-12·CVSS 9.8
CVE-2023-50164 [CRITICAL] ET WEB_SPECIFIC_APPS Apache Struts2 uploadFileName Directory Traversal Attempt (CVE-2023-50164) M1
ET WEB_SPECIFIC_APPS Apache Struts2 uploadFileName Directory Traversal Attempt (CVE-2023-50164) M1
Rule: alert http any any -> $HOME_NET any (msg:"ET WEB_SPECIFIC_APPS Apache Struts2 uploadFileName Directory Traversal Attempt (CVE-2023-50164) M1"; flow:established,to_server; http.method; content:"POST"; http.uri; content:"/upload.action"; http.request_body; content:"Content-Disposition|3a 20|form-data|3b 20|name|3d 22|"; content:"uploadFileName|22|"; nocase; fast_pattern; pcre:"/(\x2e\x2e\x2f|\x252e\x252e\x252f)/Ri"; reference:cve,2023-50164; classtype:attempted-admin; sid:2049667; rev:3; metadata:affected_product Apache_Struts2, created_at 2023_12_12, cve CVE_2023_50164, deployment Perimeter, deployment Internal, confidence High, signature_severity Major, tag Description_Generated_By_Pro
Suricata
ET WEB_SPECIFIC_APPS Apache Struts2 Possible uploadFileName Directory Traversal Attempt (CVE-2023-50164) - uploadFileName Parameter M2
suricata·2023-12-12·CVSS 9.8
CVE-2023-50164 [CRITICAL] ET WEB_SPECIFIC_APPS Apache Struts2 Possible uploadFileName Directory Traversal Attempt (CVE-2023-50164) - uploadFileName Parameter M2
ET WEB_SPECIFIC_APPS Apache Struts2 Possible uploadFileName Directory Traversal Attempt (CVE-2023-50164) - uploadFileName Parameter M2
Rule: alert http any any -> $HOME_NET any (msg:"ET WEB_SPECIFIC_APPS Apache Struts2 Possible uploadFileName Directory Traversal Attempt (CVE-2023-50164) - uploadFileName Parameter M2"; flow:established,to_server; http.method; content:"POST"; http.uri; content:"uploadFileName|3d|"; fast_pattern; nocase; pcre:"/(\x2e\x2e\x2f|\x252e\x252e\x252f)/Ri"; reference:cve,2023-50164; classtype:attempted-admin; sid:2049670; rev:2; metadata:affected_product Apache_Struts2, created_at 2023_12_12, cve CVE_2023_50164, deployment Perimeter, deployment Internal, confidence High, signature_severity Major, tag Description_Generated_By_Proofpoint_Nexus, updated_at 2024_11_26,
Suricata
ET WEB_SPECIFIC_APPS Apache Struts2 Possible uploadFileName Directory Traversal Attempt (CVE-2023-50164) - uploadFileName Parameter M1
suricata·2023-12-12·CVSS 9.8
CVE-2023-50164 [CRITICAL] ET WEB_SPECIFIC_APPS Apache Struts2 Possible uploadFileName Directory Traversal Attempt (CVE-2023-50164) - uploadFileName Parameter M1
ET WEB_SPECIFIC_APPS Apache Struts2 Possible uploadFileName Directory Traversal Attempt (CVE-2023-50164) - uploadFileName Parameter M1
Rule: alert http any any -> $HOME_NET any (msg:"ET WEB_SPECIFIC_APPS Apache Struts2 Possible uploadFileName Directory Traversal Attempt (CVE-2023-50164) - uploadFileName Parameter M1"; flow:established,to_server; http.method; content:"POST"; http.request_body; content:"|22|uploadFileName|22|"; fast_pattern; nocase; pcre:"/(\x2e\x2e\x2f|\x252e\x252e\x252f)/Ri"; reference:cve,2023-50164; classtype:attempted-admin; sid:2049669; rev:3; metadata:affected_product Apache_Struts2, created_at 2023_12_12, cve CVE_2023_50164, deployment Perimeter, deployment Internal, confidence High, signature_severity Major, tag Description_Generated_By_Proofpoint_Nexus, updated_at
Elastic
Potential Webshell Deployed via Apache Struts CVE-2023-50164 Exploitation
elastic_rules·CVSS 9.8
CVE-2023-50164 [CRITICAL] Potential Webshell Deployed via Apache Struts CVE-2023-50164 Exploitation
Potential Webshell Deployed via Apache Struts CVE-2023-50164 Exploitation
Identifies successful exploitation of CVE-2023-50164, a critical path traversal vulnerability in Apache Struts 2 file
upload functionality. This high-fidelity rule detects a specific attack sequence where a malicious multipart/form-data
POST request with WebKitFormBoundary is made to a Struts .action upload endpoint, immediately followed by the creation
of a JSP web shell file by a Java process in Tomcat's webapps directories. This correlated activity indicates active
exploitation resulting in remote code execution capability through unauthorized file upload and web shell deployment.
Query:
sequence by agent.id with maxspan=10s
[network where data_stream.dataset == "network_traffic.http" and
http.request.method ==
No public exploits indexed.
Zscaler
CVE-2025-24813: Apache Tomcat Vulnerability | ThreatLabz
blogs_zscaler·2025-03-21·CVSS 9.8
[CRITICAL] CVE-2025-24813: Apache Tomcat Vulnerability | ThreatLabz
Provide users with seamless, secure, reliable access to applications and data.
Build and run secure cloud apps, enable zero trust cloud connectivity, and protect workloads from data center to cloud.
Provide zero trust connectivity for IoT and OT devices and secure remote access to OT systems.
Provide zero trust site-to-site connectivity and reliable access to B2B apps for partners.
Industry Report
Zscaler: A Leader in the 2025 Gartner® Magic Quadrant™ for Security Service Edge (SSE)
USE CASES
INDUSTRY & MARKET SOLUTIONS
PARTNERS
TECHNOLOGY PARTNERS
Resource Center
Events & Trainings
Security Research & Services
Tools
Community & Support
CXO REVOLUTIONARIES
Amplifying the voices of real-world digital and zero trust pioneers
Discover how it began and where it’s going
Meet o
Bleepingcomputer
New critical Apache Struts flaw exploited to find vulnerable servers
blogs_bleepingcomputer·2024-12-17·CVSS 9.8
CVE-2024-53677 [CRITICAL] New critical Apache Struts flaw exploited to find vulnerable servers
## New critical Apache Struts flaw exploited to find vulnerable servers
## Bill Toulas
A recently patched critical Apache Struts 2 vulnerability tracked as CVE-2024-53677 is actively exploited using public proof-of-concept exploits to find vulnerable devices.
Apache Struts is an open-source framework for building Java-based web applications used by various organizations, including government agencies, e-commerce platforms, financial institutions, and airlines.
Apache publicly disclosed the Struts CVE-2024-53677 flaw (CVSS 4.0 score: 9.5, "critical") six days ago, stating it is a bug in the software's file upload logic, allowing path traversals and the uploading of malicious files that could lead to remote code execution.
It impacts Struts 2.0.0 through 2.3.37 (end-of-life), 2.5.0 thro
Zscaler
CVE-2024-38856 | ThreatLabz
blogs_zscaler·2024-08-12·CVSS 9.1
[CRITICAL] CVE-2024-38856 | ThreatLabz
Provide users with seamless, secure, reliable access to applications and data.
Build and run secure cloud apps, enable zero trust cloud connectivity, and protect workloads from data center to cloud.
Provide zero trust connectivity for IoT and OT devices and secure remote access to OT systems.
Provide zero trust site-to-site connectivity and reliable access to B2B apps for partners.
Industry Report
Zscaler: A Leader in the 2025 Gartner® Magic Quadrant™ for Security Service Edge (SSE)
USE CASES
INDUSTRY & MARKET SOLUTIONS
PARTNERS
TECHNOLOGY PARTNERS
Resource Center
Events & Trainings
Security Research & Services
Tools
Community & Support
CXO REVOLUTIONARIES
Amplifying the voices of real-world digital and zero trust pioneers
Discover how it began and where it’s going
Meet o
Qualys
Announcing TotalCloud™ 2.0 with TruRisk™ Insights: The Future of Cloud and SaaS Security
blogs_qualys·2024-02-07
Announcing TotalCloud™ 2.0 with TruRisk™ Insights: The Future of Cloud and SaaS Security
## Table of Contents
The Key Challenges Solved
TotalCloud 2.0 with TruRisk Insights is the Answer
Feature 1: TruRisk Insights: One Prioritized View of Risk
Feature 2: SaaS Security Posture Management (SSPM): Managing the Security Posture and Risk Across Your Entire SaaS Application Stack
Feature 3: Supply Chain Software Security: Detect Vulnerabilities in Open-Source Software
Feature 4: Operationalizing Risk Reduction: Enhanced Remediation Through Integration With ITSM Tools
The Power of a Single Platform
TotalCloud 2.0: A Unified AI-Powered CNAPP Solution
Rapid cloud and SaaS adoption is driving digital transformation that’s reshaping business agility and scalability, making cloud and SaaS security more critical than ever. Recognizing this shift, in November 2022, Qualys launched
Qualys
Announcing TotalCloud™ 2.0 with TruRisk™ Insights: The Future of Cloud and SaaS Security | Qualys
blogs_qualys·2024-02-07
Announcing TotalCloud™ 2.0 with TruRisk™ Insights: The Future of Cloud and SaaS Security | Qualys
#### Table of Contents
- The Key Challenges Solved
- TotalCloud 2.0 with TruRisk Insights is the Answer
- Feature 1: TruRisk Insights: One Prioritized View of Risk
- Feature 2: SaaS Security Posture Management (SSPM): Managing the Security Posture and Risk Across Your Entire SaaS Application Stack
- Feature 3: Supply Chain Software Security: Detect Vulnerabilities in Open-Source Software
- Feature 4: Operationalizing Risk Reduction: Enhanced Remediation Through Integration With ITSM Tools
- The Power of a Single Platform
- TotalCloud 2.0: A Unified AI-Powered CNAPP Solution
Rapid cloud and SaaS adoption is driving digital transformation that’s reshaping business agility and scalability, making cloud and SaaS security more critical than ever. Recognizing this shift, in November 2022, Qual
Zscaler
CVE-2024-23897 | ThreatLabz
blogs_zscaler·2024-02-06·CVSS 9.8
[CRITICAL] CVE-2024-23897 | ThreatLabz
Provide users with seamless, secure, reliable access to applications and data.
Build and run secure cloud apps, enable zero trust cloud connectivity, and protect workloads from data center to cloud.
Provide zero trust connectivity for IoT and OT devices and secure remote access to OT systems.
Provide zero trust site-to-site connectivity and reliable access to B2B apps for partners.
Industry Report
Zscaler: A Leader in the 2025 Gartner® Magic Quadrant™ for Security Service Edge (SSE)
USE CASES
INDUSTRY & MARKET SOLUTIONS
PARTNERS
TECHNOLOGY PARTNERS
Resource Center
Events & Trainings
Security Research & Services
Tools
Community & Support
CXO REVOLUTIONARIES
Amplifying the voices of real-world digital and zero trust pioneers
Discover how it began and where it’s going
Meet o
Zscaler
Ivanti VPN Vulnerability | ThreatLabz
blogs_zscaler·2024-02-02·CVSS 8.2
[HIGH] Ivanti VPN Vulnerability | ThreatLabz
Provide users with seamless, secure, reliable access to applications and data.
Build and run secure cloud apps, enable zero trust cloud connectivity, and protect workloads from data center to cloud.
Provide zero trust connectivity for IoT and OT devices and secure remote access to OT systems.
Provide zero trust site-to-site connectivity and reliable access to B2B apps for partners.
Industry Report
Zscaler: A Leader in the 2025 Gartner® Magic Quadrant™ for Security Service Edge (SSE)
USE CASES
INDUSTRY & MARKET SOLUTIONS
PARTNERS
TECHNOLOGY PARTNERS
Resource Center
Events & Trainings
Security Research & Services
Tools
Community & Support
CXO REVOLUTIONARIES
Amplifying the voices of real-world digital and zero trust pioneers
Discover how it began and where it’s going
Meet o
Zscaler
Rise in Source IP-Based Authentication Abuse
blogs_zscaler·2024-01-19
Rise in Source IP-Based Authentication Abuse
Provide users with seamless, secure, reliable access to applications and data.
Build and run secure cloud apps, enable zero trust cloud connectivity, and protect workloads from data center to cloud.
Provide zero trust connectivity for IoT and OT devices and secure remote access to OT systems.
Provide zero trust site-to-site connectivity and reliable access to B2B apps for partners.
Industry Report
Zscaler: A Leader in the 2025 Gartner® Magic Quadrant™ for Security Service Edge (SSE)
USE CASES
INDUSTRY & MARKET SOLUTIONS
PARTNERS
TECHNOLOGY PARTNERS
Resource Center
Events & Trainings
Security Research & Services
Tools
Community & Support
CXO REVOLUTIONARIES
Amplifying the voices of real-world digital and zero trust pioneers
Discover how it began and where it’s going
Meet o
Qualys
Oracle Patch Update, January 2024 Security Update Review
blogs_qualys·2024-01-17
Oracle Patch Update, January 2024 Security Update Review
## Table of Contents
Qualys QID Coverage
Notable Oracle Vulnerabilities Patched
Discover and Prioritize Vulnerabilities in Vulnerability Management, Detection & Response (VMDR)
Oracle has released its first quarterly edition of Critical Patch Update, which contains patches for 389 security vulnerabilities. Some of the vulnerabilities addressed in this update impact more than one product. These patches address vulnerabilities in a wide range of product families, including Oracle code and third-party components included in Oracle products.
In the first quarterly Oracle Critical Patch Update, Oracle Financial Services Applications received the highest number of patches, 71, constituting 18% of the total patches released. Oracle Communications and Oracle Communications Applications follow
Qualys
Oracle Patch Update, January 2024 Security Update Review | Qualys
blogs_qualys·2024-01-17
Oracle Patch Update, January 2024 Security Update Review | Qualys
#### Table of Contents
- Qualys QID Coverage
- Notable Oracle Vulnerabilities Patched
- Discover and Prioritize Vulnerabilities in Vulnerability Management, Detection & Response (VMDR)
Oracle has released its first quarterly edition of Critical Patch Update, which contains patches for 389 security vulnerabilities. Some of the vulnerabilities addressed in this update impact more than one product. These patches address vulnerabilities in a wide range of product families, including Oracle code and third-party components included in Oracle products.
In the first quarterly Oracle Critical Patch Update, Oracle Financial Services Applications received the highest number of patches, 71, constituting 18% of the total patches released. Oracle Communications and Oracle Communications Applications
Qualys
Detect and Manage the Risk of Apache Struts (CVE-2023-50164) Comprehensively | Qualys
blogs_qualys·2024-01-12·CVSS 9.8
CVE-2023-50164 [CRITICAL] Detect and Manage the Risk of Apache Struts (CVE-2023-50164) Comprehensively | Qualys
#### Table of Contents
- Introduction
- Understanding CVE-2023-50164
- Challenges of Discovering Open-Source Packages
- Manage the TruRisk of Apache Struts Using the Qualys Platform
- Qualys QID Coverage
- Discover Vulnerable Apache Struts Using Qualys VMDR
- Prioritize and Track in Real Time With TruRisk
- Software Composition Analysis
- Using Scanner and Software Composition Analysis With Cloud Agent Together
- Detecting the Vulnerability With Qualys WAS
- Detecting the Vulnerability With Qualys TotalCloud Container Security
- Mitigate the Risk
- Conclusion
- Act Now
## Introduction
In the vast landscape of cybersecurity, staying vigilant against potential threats is crucial. A critical vulnerability that surfaced recently is CVE-2023-50164, affecting Apache Struts 2, a widely used op
Qualys
Detect and Manage the Risk of Apache Struts (CVE-2023-50164) Comprehensively
blogs_qualys·2024-01-12·CVSS 9.8
CVE-2023-50164 [CRITICAL] Detect and Manage the Risk of Apache Struts (CVE-2023-50164) Comprehensively
## Table of Contents
Introduction
Understanding CVE-2023-50164
Challenges of Discovering Open-Source Packages
Manage the TruRisk of Apache Struts Using the Qualys Platform
Qualys QID Coverage
Discover Vulnerable Apache Struts Using Qualys VMDR
Prioritize and Track in Real Time With TruRisk
Software Composition Analysis
Using Scanner and Software Composition Analysis With Cloud Agent Together
Detecting the Vulnerability With Qualys WAS
Detecting the Vulnerability With Qualys TotalCloud Container Security
Mitigate the Risk
Conclusion
Act Now
## Introduction
In the vast landscape of cybersecurity, staying vigilant against potential threats is crucial. A critical vulnerability that surfaced recently is CVE-2023-50164 , affecting Apache Struts 2, a widely used open-source framew
Zscaler
DreamBus | ThreatLabz
blogs_zscaler·2024-01-11
DreamBus | ThreatLabz
Provide users with seamless, secure, reliable access to applications and data.
Build and run secure cloud apps, enable zero trust cloud connectivity, and protect workloads from data center to cloud.
Provide zero trust connectivity for IoT and OT devices and secure remote access to OT systems.
Provide zero trust site-to-site connectivity and reliable access to B2B apps for partners.
Industry Report
Zscaler: A Leader in the 2025 Gartner® Magic Quadrant™ for Security Service Edge (SSE)
USE CASES
INDUSTRY & MARKET SOLUTIONS
PARTNERS
TECHNOLOGY PARTNERS
Resource Center
Events & Trainings
Security Research & Services
Tools
Community & Support
CXO REVOLUTIONARIES
Amplifying the voices of real-world digital and zero trust pioneers
Discover how it began and where it’s going
Meet o
Zscaler
CVE-2023-51467 | ThreatLabz
blogs_zscaler·2024-01-08·CVSS 9.8
[CRITICAL] CVE-2023-51467 | ThreatLabz
Provide users with seamless, secure, reliable access to applications and data.
Build and run secure cloud apps, enable zero trust cloud connectivity, and protect workloads from data center to cloud.
Provide zero trust connectivity for IoT and OT devices and secure remote access to OT systems.
Provide zero trust site-to-site connectivity and reliable access to B2B apps for partners.
Industry Report
Zscaler: A Leader in the 2025 Gartner® Magic Quadrant™ for Security Service Edge (SSE)
USE CASES
INDUSTRY & MARKET SOLUTIONS
PARTNERS
TECHNOLOGY PARTNERS
Resource Center
Events & Trainings
Security Research & Services
Tools
Community & Support
CXO REVOLUTIONARIES
Amplifying the voices of real-world digital and zero trust pioneers
Discover how it began and where it’s going
Meet o
Wiz
Crying Out Cloud - January Newsletter | Wiz
blogs_wiz·2024-01-01·CVSS 8.8
CVE-2023-26360 [HIGH] Crying Out Cloud - January Newsletter | Wiz
This month we’ve seen several vulnerabilities and security incidents that have left users affected. We know you're busy too, so we've sifted through the noise to bring you the real game-changers.
Here are our top picks!
## 🐞 High Profile Vulnerabilities
Adobe ColdFusion RCE vulnerability exploited in-the-wild
CVE-2023-26360 is a critical vulnerability in Adobe ColdFusion that was published in March 2023. This vulnerability could allow an attacker to execute arbitrary code on the remote server in the context of the current user. On December 5, 2023, CISA announced that threat actors were actively exploiting this vulnerability in order to gain initial access to government-owned servers. Customers should update Adobe ColdFusion to the latest version.
According to Wiz data, less than 1% o
Qualys
Yet Another Apache Struts 2 Vulnerability – CVE-2023-50164
blogs_qualys·2023-12-26·CVSS 9.8
CVE-2023-50164 [CRITICAL] Yet Another Apache Struts 2 Vulnerability – CVE-2023-50164
## Table of Contents
About CVE-2023-50164
Detecting the Vulnerability with Qualys WAS
Solution
Protection with WAF
Credits
Additional Contributors
Apache Struts is a popular open-source web application framework used to develop MVC-based web applications. The widespread adoption of the Apache Struts framework has resulted in the related applications being targeted by malicious actors over the years. The popularity of the framework results in a major concern across organizations for any related vulnerability.
## About CVE-2023-50164
CVE-2023-50164 was published on December 7th, 2023 to create awareness of a critical vulnerability in Apache Struts 2. A CVSS score of 9.8 has been assigned to the vulnerability.
Specific versions of Apache Struts2 allow for a malicious file to be uplo
Qualys
Apache Struts 2 Security Flaw CVE-2023-50164 | Qualys
blogs_qualys·2023-12-26·CVSS 9.8
CVE-2023-50164 [CRITICAL] Apache Struts 2 Security Flaw CVE-2023-50164 | Qualys
#### Table of Contents
- About CVE-2023-50164
- Detecting the Vulnerability with Qualys WAS
- Solution
- Protection with WAF
- Credits
- Additional Contributors
Apache Struts is a popular open-source web application framework used to develop MVC-based web applications. The widespread adoption of the Apache Struts framework has resulted in the related applications being targeted by malicious actors over the years. The popularity of the framework results in a major concern across organizations for any related vulnerability.
## About CVE-2023-50164
CVE-2023-50164 was published on December 7th, 2023 to create awareness of a critical vulnerability in Apache Struts 2. A CVSS score of 9.8 has been assigned to the vulnerability.
Specific versions of Apache Struts2 allow for a malicious file t
Zscaler
CVE-2023-50164 Coverage Advisory | ThreatLabz
blogs_zscaler·2023-12-18·CVSS 9.8
[CRITICAL] CVE-2023-50164 Coverage Advisory | ThreatLabz
Provide users with seamless, secure, reliable access to applications and data.
Build and run secure cloud apps, enable zero trust cloud connectivity, and protect workloads from data center to cloud.
Provide zero trust connectivity for IoT and OT devices and secure remote access to OT systems.
Provide zero trust site-to-site connectivity and reliable access to B2B apps for partners.
Industry Report
Zscaler: A Leader in the 2025 Gartner® Magic Quadrant™ for Security Service Edge (SSE)
USE CASES
INDUSTRY & MARKET SOLUTIONS
PARTNERS
TECHNOLOGY PARTNERS
Resource Center
Events & Trainings
Security Research & Services
Tools
Community & Support
CXO REVOLUTIONARIES
Amplifying the voices of real-world digital and zero trust pioneers
Discover how it began and where it’s going
Meet o
Trendmicro
Decoding CVE-2023-50164: Unveiling the Apache Struts File Upload Exploit
blogs_trendmicro·2023-12-15·CVSS 9.8
CVE-2023-50164 [CRITICAL] Decoding CVE-2023-50164: Unveiling the Apache Struts File Upload Exploit
Sfruttamento vulnerabilità
## Decoding CVE-2023-50164: Unveiling the Apache Struts File Upload Exploit
In this blog entry, we discuss the technical details of CVE-2023-50164, a critical vulnerability that affects Apache Struts 2 and enables unauthorized path traversal.
By: Jagir Shastri Dec 15, 2023 Read time: ( words)
Save to Folio
Apache has recently released an advisory regarding CVE-2023-50164, a critical vulnerability with a severity rating of 9.8 that affects Apache Struts 2. CVE-2023-50164 is intricately tied to an organization's Apache Struts architecture and the way it uses its file upload feature, enabling unauthorized path traversal that could be abused to upload a malicious file and perform remote code execution (RCE). It should be noted that exploiting this vulnerability
Trendmicro
Decoding CVE-2023-50164: Unveiling the Apache Struts File Upload Exploit
blogs_trendmicro·2023-12-15·CVSS 9.8
CVE-2023-50164 [CRITICAL] Decoding CVE-2023-50164: Unveiling the Apache Struts File Upload Exploit
Exploits & Vulnerabilities
# Decoding CVE-2023-50164: Unveiling the Apache Struts File Upload Exploit
In this blog entry, we discuss the technical details of CVE-2023-50164, a critical vulnerability that affects Apache Struts 2 and enables unauthorized path traversal.
By: Jagir Shastri
2023/12/15
Read time: ( words)
Save to Folio
Apache has recently released an advisory regarding CVE-2023-50164, a critical vulnerability with a severity rating of 9.8 that affects Apache Struts 2. CVE-2023-50164 is intricately tied to an organization's Apache Struts architecture and the way it uses its file upload feature, enabling unauthorized path traversal that could be abused to upload a malicious file and perform remote code execution (RCE). It should be noted that exploiting this vulnerability at
Trendmicro
Decoding CVE-2023-50164: Unveiling the Apache Struts File Upload Exploit
blogs_trendmicro·2023-12-15·CVSS 9.8
CVE-2023-50164 [CRITICAL] Decoding CVE-2023-50164: Unveiling the Apache Struts File Upload Exploit
Exploits & Vulnerabilities
## Decoding CVE-2023-50164: Unveiling the Apache Struts File Upload Exploit
In this blog entry, we discuss the technical details of CVE-2023-50164, a critical vulnerability that affects Apache Struts 2 and enables unauthorized path traversal.
By: Jagir Shastri Dec 15, 2023 Read time: ( words)
Save to Folio
Apache has recently released an advisory regarding CVE-2023-50164, a critical vulnerability with a severity rating of 9.8 that affects Apache Struts 2. CVE-2023-50164 is intricately tied to an organization's Apache Struts architecture and the way it uses its file upload feature, enabling unauthorized path traversal that could be abused to upload a malicious file and perform remote code execution (RCE). It should be noted that exploiting this vulnerability
Trendmicro
Decoding CVE-2023-50164: Unveiling the Apache Struts File Upload Exploit
blogs_trendmicro·2023-12-15·CVSS 9.8
CVE-2023-50164 [CRITICAL] Decoding CVE-2023-50164: Unveiling the Apache Struts File Upload Exploit
Exploits & Vulnerabilities
## Decoding CVE-2023-50164: Unveiling the Apache Struts File Upload Exploit
In this blog entry, we discuss the technical details of CVE-2023-50164, a critical vulnerability that affects Apache Struts 2 and enables unauthorized path traversal.
By: Jagir Shastri 2023/12/15 Read time: ( words)
Save to Folio
Apache has recently released an advisory regarding CVE-2023-50164, a critical vulnerability with a severity rating of 9.8 that affects Apache Struts 2. CVE-2023-50164 is intricately tied to an organization's Apache Struts architecture and the way it uses its file upload feature, enabling unauthorized path traversal that could be abused to upload a malicious file and perform remote code execution (RCE). It should be noted that exploiting this vulnerability at
Trendmicro
Decoding CVE-2023-50164: Unveiling the Apache Struts File Upload Exploit
blogs_trendmicro·2023-12-15·CVSS 9.8
CVE-2023-50164 [CRITICAL] Decoding CVE-2023-50164: Unveiling the Apache Struts File Upload Exploit
Ausnutzung von Schwachstellen
## Decoding CVE-2023-50164: Unveiling the Apache Struts File Upload Exploit
In this blog entry, we discuss the technical details of CVE-2023-50164, a critical vulnerability that affects Apache Struts 2 and enables unauthorized path traversal.
By: Jagir Shastri Dec 15, 2023 Read time: ( words)
Save to Folio
Apache has recently released an advisory regarding CVE-2023-50164, a critical vulnerability with a severity rating of 9.8 that affects Apache Struts 2. CVE-2023-50164 is intricately tied to an organization's Apache Struts architecture and the way it uses its file upload feature, enabling unauthorized path traversal that could be abused to upload a malicious file and perform remote code execution (RCE). It should be noted that exploiting this vulnerabili
Trendmicro
Decoding CVE-2023-50164: Unveiling the Apache Struts File Upload Exploit
blogs_trendmicro·2023-12-15·CVSS 9.8
CVE-2023-50164 [CRITICAL] Decoding CVE-2023-50164: Unveiling the Apache Struts File Upload Exploit
Exploits y vulnerabilidades
## Decoding CVE-2023-50164: Unveiling the Apache Struts File Upload Exploit
In this blog entry, we discuss the technical details of CVE-2023-50164, a critical vulnerability that affects Apache Struts 2 and enables unauthorized path traversal.
By: Jagir Shastri Dec 15, 2023 Read time: ( words)
Save to Folio
Apache has recently released an advisory regarding CVE-2023-50164, a critical vulnerability with a severity rating of 9.8 that affects Apache Struts 2. CVE-2023-50164 is intricately tied to an organization's Apache Struts architecture and the way it uses its file upload feature, enabling unauthorized path traversal that could be abused to upload a malicious file and perform remote code execution (RCE). It should be noted that exploiting this vulnerability
Bleepingcomputer
Hackers are exploiting critical Apache Struts flaw using public PoC
blogs_bleepingcomputer·2023-12-13·CVSS 9.8
CVE-2023-50164 [CRITICAL] Hackers are exploiting critical Apache Struts flaw using public PoC
## Hackers are exploiting critical Apache Struts flaw using public PoC
## Bill Toulas
Hackers are attempting to leverage a recently fixed critical vulnerability (CVE-2023-50164) in Apache Struts that leads to remote code execution, in attacks that rely on publicly available proof-of-concept exploit code.
It appears that threat actors have just started, according to the Shadowserver scanning platform, whose researchers observed a small number of IP addresses engaged in exploitation attempts.
Apache Struts is an open-source web application framework designed to streamline the development of Java EE web apps, offering a form-based interface and extensive integration capabilities.
The product is used extensively across various industries in both the private and public sectors, including g
Greynoiseio
NoiseLetter
blogs_greynoiseio
NoiseLetter
CVE Disclosure Early Warning Get an early warning when traffic spikes indicate a high likelihood of new disclosures
Compromised Asset Detection Find out immediately if an asset communicates with a malicious IP address
Vulnerability Prioritization Get real-time insight into active exploitation trends to better understand risk and severity
SOC Efficiency Filter out noisy, low priority and false-positive alerts from mass internet scanners
Incident Investigation Add context to incidents to speed the determinations of scope and timelines
Threat Hunting Quickly identify anomalous behavior and enrich your threat hunting campaigns
Why GreyNoise
CVE Disclosure Early Warning Get an early warning when traffic spikes indicate a high likelihood of new disclosures
Compromised Asset Detection Fin
Greynoiseio
A Day In The Life Of A GreyNoise Researcher: The Path To Understanding The Remote Code Execution Vulnerability Apache (CVE-2023-50164) in Apache Struts2
blogs_greynoiseio·CVSS 5.5
[MEDIUM] A Day In The Life Of A GreyNoise Researcher: The Path To Understanding The Remote Code Execution Vulnerability Apache (CVE-2023-50164) in Apache Struts2
CVE Disclosure Early Warning Get an early warning when traffic spikes indicate a high likelihood of new disclosures
Compromised Asset Detection Find out immediately if an asset communicates with a malicious IP address
Vulnerability Prioritization Get real-time insight into active exploitation trends to better understand risk and severity
SOC Efficiency Filter out noisy, low priority and false-positive alerts from mass internet scanners
Incident Investigation Add context to incidents to speed the determinations of scope and timelines
Threat Hunting Quickly identify anomalous behavior and enrich your threat hunting campaigns
Why GreyNoise
CVE Disclosure Early Warning Get an early warning when traffic spikes indicate a high likelihood of new disclosures
Compromised Asset Detection Fin
Greynoiseio
Storm Watch
blogs_greynoiseio
Storm Watch
CVE Disclosure Early Warning Get an early warning when traffic spikes indicate a high likelihood of new disclosures
Compromised Asset Detection Find out immediately if an asset communicates with a malicious IP address
Vulnerability Prioritization Get real-time insight into active exploitation trends to better understand risk and severity
SOC Efficiency Filter out noisy, low priority and false-positive alerts from mass internet scanners
Incident Investigation Add context to incidents to speed the determinations of scope and timelines
Threat Hunting Quickly identify anomalous behavior and enrich your threat hunting campaigns
Why GreyNoise
CVE Disclosure Early Warning Get an early warning when traffic spikes indicate a high likelihood of new disclosures
Compromised Asset Detection Fin
Bugzilla
CVE-2023-50164 Struts: File upload component had a directory traversal vulnerability
bugzilla·2023-12-11·CVSS 9.8
CVE-2023-50164 [CRITICAL] CVE-2023-50164 Struts: File upload component had a directory traversal vulnerability
CVE-2023-50164 Struts: File upload component had a directory traversal vulnerability
An attacker can manipulate file upload params to enable paths traversal and under some circumstances this can lead to uploading a malicious file which can be used to perform Remote Code Execution. Users are recommended to upgrade to versions Struts 2.5.33 or Struts 6.3.0.2 or greater to fix this issue.
https://lists.apache.org/thread/yh09b3fkf6vz5d6jdgrlvmg60lfwtqhj
https://struts.apache.org/
https://www.cve.org/CVERecord?id=CVE-2023-50164
arXiv
ZTD_(JAVA): Mitigating Software Supply Chain Vulnerabilities via Zero-Trust Dependencies
arxiv_fulltext·2024-12-20
ZTD_(JAVA): Mitigating Software Supply Chain Vulnerabilities via Zero-Trust Dependencies
Mitigating Java Supply Chain Exploits with a Runtime Permission Model
: Preventing Java Supply Chain RCE Exploits via a Usable Package-level Permission Manager
: Preventing the next Log4Shell in Java with a Supply-chain Aware Permission Manager
Preventing Supply Chain Vulnerabilities in Java with a Fine-Grained Permission Manager
A Supply-Chain-Aware Sandbox Design for Supply Chain Vulnerability Defense
Enabling Component-level Sandboxing for Supply Chain Vulnerability Defense
A Component-level Sandbox Design for Runtime Supply Chain Vulnerability Defense
Enabling a for Mitigating Software Supply Chain Vulnerability Exploitation
Enabling a for Mitigating Software Supply Chain Vulnerability Exploitation in Java
: Enabling a for Mitigating Software Supply Chain Vulnerability Exploitation in
http://packetstormsecurity.com/files/176157/Struts-S2-066-File-Upload-Remote-Code-Execution.htmlhttps://lists.apache.org/thread/yh09b3fkf6vz5d6jdgrlvmg60lfwtqhjhttps://security.netapp.com/advisory/ntap-20231214-0010/https://www.openwall.com/lists/oss-security/2023/12/07/1http://packetstormsecurity.com/files/176157/Struts-S2-066-File-Upload-Remote-Code-Execution.htmlhttps://lists.apache.org/thread/yh09b3fkf6vz5d6jdgrlvmg60lfwtqhjhttps://security.netapp.com/advisory/ntap-20231214-0010/https://www.openwall.com/lists/oss-security/2023/12/07/1
2023-12-07
Published
Exploited in the wild