CVE-2013-1966 | Apache Struts 2.3.14 includeParams code injection (S2-013 / EDB-25980)
A vulnerability was found in Apache Struts 2.3.14. It has been declared as critical. This vulnerability affects unknown code. The manipulation of the argument includeParams leads to code injection.
This vulnerability was named CVE-2013-1966. The attack can be initiated remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.