Skip to content
COOEY

EXPOSURES › CVE-2017-5638

CVE-2017-5638

CRITICAL ⌖ ON CISA KEV · EXPLOITED
DETAIL
SourceCISA-KEV · kev Published2021-11-03 Referencehttps://nvd.nist.gov/vuln/detail/CVE-2017-5638 ↗
⚡ RCE ⌖ EXPLOITED IN THE WILD SHAME 72/100 ransomwarerceexploited-in-wildunpatched

Apache Struts' file upload parser allowed attackers to execute arbitrary code remotely, actively exploited and linked to ransomware attacks.

A vulnerability in Apache Struts allowed malicious file uploads via Content-Type manipulation, resulting in remote code execution. DIB organizations using Struts are at risk of compromise, potentially impacting CMMC compliance and leading to data breaches. Immediate patching and vulnerability scanning are critical.

Shame score — The vulnerability's exploitation in ransomware attacks highlights a severe and avoidable security failure with significant operational impact.

▸ RECOMMENDED ACTION  Actively exploited (CISA KEV) — remediate now, ahead of your normal patch cycle.

DESCRIPTION

Apache Struts Jakarta Multipart parser allows for malicious file upload using the Content-Type value, leading to remote code execution.

SENTIMENT · TRUSTED SOURCES
synthesis severe-fallout -0.60
Apache faced severe fallout due to a critical RCE vulnerability in Struts, widely condemned by security press and authorities for allowing malicious file uploads via Content-Type, leading to remote co
cooey ↗ severe-fallout -0.80
Severe condemnation for critical RCE flaw in Struts Jakarta Multipart parser enabling malicious file uploads via Content-Type.
"Apache Struts Jakarta Multipart parser allows for malicious file upload using the Content-Type value, leading to remote code execution."
NVD ↗ severe-fallout +0.00
Neutral; page displays NVD redirect warning and unrelated CVE-2026-56164, no sentiment toward Apache.
www.cvefind.com ↗ severe-fallout +0.00
Neutral; CVE Find database lists CVEs without specific sentiment toward Apache for CVE-2017-5638.
app.opencve.io ↗ severe-fallout +0.00
Neutral; OpenCVE search results show unrelated CVEs, no sentiment toward Apache.
sam.gov ↗ severe-fallout +0.00
Neutral; SAM.gov page unrelated to Apache or CVE-2017-5638.
SentinelOne ↗ severe-fallout +0.00
Neutral; SentinelOne vulnerability database page unrelated to Apache or CVE-2017-5638.
github.com ↗ severe-fallout +0.00
Neutral; GitHub cisagov/kev-data mirror unrelated to Apache or CVE-2017-5638.
AFFECTED FEDRAMP PRODUCTS · 0
No correlated FedRAMP products.