CVE Intel / CVE-2013-2251

CVE-2013-2251

archiva · apache, fujitsu, microsoft, oracle, redhat
CISA KEVexploited on our sensorsCritical network detectable

What it is

Apache Struts 2.0.0 through 2.3.15 allows remote attackers to execute arbitrary OGNL expressions via a parameter with a crafted (1) action:, (2) redirect:, or (3) redirectAction: prefix.

Live exploitation on the huntback network (30 days)

24
attempts captured
17
distinct source IPs
2026-09-22
last seen
huntback carries a network signature for this CVE. Exploitation attempts are detected on the decoy fleet in real time.

How huntback helps

Deploy a decoy that emulates archiva and you will see every attempt at this CVE the moment it lands, with the full payload, the attacker's infrastructure, and any stage-2 loader. Then huntback can scan the attacker back.

CVSSn/a Critical
EPSS1.00 (99% pct)
In CISA KEVyes
Publishedn/a
Network detectableyes, signatured