Does the Apache Strut Vulnerability CVE-2023-46604 affect XCOM?
search cancel

Does the Apache Strut Vulnerability CVE-2023-46604 affect XCOM?

book

Article ID: 277950

calendar_today

Updated On:

Products

XCOM Data Transport

Issue/Introduction

Our customer has XCOM installed on Windows Server 2016.  Does the Apache Strut Vulnerability

CVE-2023-46604 affect XCOM?

Environment

Windows Server 2016.

Cause

-

Resolution

Looking at the details of CVE-2023-46604, it impacts Apache ActiveMQ and software.  XCOM doesn't make

use of ActiveMQ or any other Apache libraries in the Base product.  We have a few Apache libraries used

in XCOM Gateway, but ActiveMQ is not used in Gateway too.  So, we are not impacted by this

vulnerability in any of our XCOM platforms.