Apache Struts CVE-2016-4431 Input Validation Bypass Vulnerability

description-logoDescription

Using existing default method it can be possible to bypass internal security mechanism and manipulate return string which can leads to redirecting user to unvalidated location.

affected-products-logoAffected Applications

Apache Struts

CVE References

CVE-2016-4431