CVE advisoryKnown Exploit
CVE-2016-3081
Apache Struts Dynamic Method Invocation Code Execution
Halo Surface Signal: 4 out of 5 — likely to be public-facing.
A vulnerability in Apache Struts, a web application framework, allows remote attackers to execute arbitrary code by exploiting Dynamic Method Invocation. This could lead to system compromise when the `method:` prefix is used in requests.