{"cvss":0.0,"datePublished":"2022-01-21","dateUpdated":"2022-01-21","description":"The ExceptionDelegator component in Apache Struts 2 before 2.2.3.1 contains an improper input validation vulnerability that allows for remote code execution.","dueDate":"2022-07-21","id":"CVE-2012-0391","kev_catalogs":["cisa"],"knownRansomwareCampaignUse":"Unknown","notes":"https://nvd.nist.gov/vuln/detail/CVE-2012-0391","product":"Struts 2","requiredAction":"Apply updates per vendor instructions.","severity":"HIGH","source":"cisa_known_exploited","title":"Apache Struts 2 Improper Input Validation Vulnerability","vendor":"Apache"}