Vulnerability Bulletins

Apache Struts Vulnerability Affecting Cisco Products: December 2023

System information

Affected software Cisco


On December 7, 2023, the following vulnerability in Apache Struts was disclosed: CVE-2023-50164: An attacker can manipulate file upload params to enable paths traversal and under some circumstances this can lead to uploading a malicious file which can be used to perform Remote Code Execution. For a description of this vulnerability, see the Apache Software Foundation Security Bulletin. This advisory is available at the following link:

More info:

Standar resources

Property Value
CVE CVE-2023-50164.

Version history

Version Comments Date
Ministerio de Defensa