Think you have a false positive on this rule?

Sid 1-41390

Message

SERVER-WEBAPP Apache Commons Library FileUpload unauthorized Java object upload attempt

Summary

Impact

Detailed information

Affected systems

Ease of attack

False positives

False negatives

Corrective action

Upgrade to the latest non-affected version of the software.

Apply the appropriate vendor supplied patches.

Contributors

Additional References

  • github.com/frohoff/ysoserial
  • web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2016-1000031