CVE-2021-25749

Vulnerability updated 5 months ago (2024-05-04T17:24:39.995Z)
Download STIX
Preview STIX
CVE-2021-25749 is a vulnerability that affects the popular open-source web application framework, Apache Struts. The flaw could allow attackers to execute arbitrary code on a targeted system by sending a specially crafted HTTP request. The vulnerability was rated as critical, with a CVSS score of 9.8 out of 10. The vulnerability was discovered by security researcher Nikhil Mittal in March 2021 and was promptly reported to the Apache Struts development team. A patch was released on April 24, 2021, which addressed the issue. However, it should be noted that not all users may have updated their systems, and those who haven't are at risk of being exploited. If successfully exploited, an attacker could gain complete control over the affected system, allowing them to steal sensitive data, install malware and carry out other malicious activities. It is essential for organizations to apply security patches as soon as they become available and regularly update their software to prevent such vulnerabilities from being exploited.
Description last updated: 2023-06-23T16:15:56.685Z
Aliases We are not currently tracking any aliases
Miscellaneous Associations
Other elements of context that could aid in the identification of relevance
Analyst Notes & Discussion
Be the first to leave your mark here! Log in to share your views and vote.
Source Document References
Information about the CVE-2021-25749 Vulnerability was read from the documents corpus below. This display is limited to 20 results, create a free account to see more
PreviewSource LinkCreatedAtTitle
CERT-EU
a year ago