CVE-2016-0710

HIGH

Apache Jetspeed Arbitrary File Upload

Title source: metasploit
STIX 2.1

Exploitation Summary

EIP tracks 2 public exploits for CVE-2016-0710. PoCs published by Metasploit, Andreas Lindh, wvu, including Metasploit module exploits/multi/http/apache_jetspeed_file_upload.

AI-analyzed exploit summary This Metasploit module exploits CVE-2016-0710 in Apache Jetspeed by leveraging an unsecured REST API to create an admin user and a ZIP path traversal vulnerability to upload and execute a JSP shell.

Description

Multiple SQL injection vulnerabilities in the User Manager service in Apache Jetspeed before 2.3.1 allow remote attackers to execute arbitrary SQL commands via the (1) role or (2) user parameter to services/usermanager/users/.

Exploits (2)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotejava
https://www.exploit-db.com/exploits/39643

This Metasploit module exploits CVE-2016-0710 in Apache Jetspeed by leveraging an unsecured REST API to create an admin user and a ZIP path traversal vulnerability to upload and execute a JSP shell.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Apache Jetspeed <= 2.3.0
No auth needed
Prerequisites: Network access to the target · Apache Jetspeed web interface accessible
devstral-2 · analyzed Feb 16, 2026 Full analysis →
metasploit WORKING POC MANUAL
by Andreas Lindh, wvu · rubypoclinux
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/multi/http/apache_jetspeed_file_upload.rb

This Metasploit module exploits CVE-2016-0710 in Apache Jetspeed by leveraging an unsecured User Manager REST API and a ZIP file path traversal to upload and execute a JSP shell. It creates an admin user, logs in, uploads a malicious ZIP file, and triggers the payload.

Classification
Working Poc 100%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: Apache Jetspeed <= 2.3.0
No auth needed
Prerequisites: Network access to the target · Apache Jetspeed REST API exposed
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Scores

CVSS v3 8.8
EPSS 0.7803
EPSS Percentile 99.0%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-89
Status published
Products (2)
apache/jetspeed < 2.3.0
org.apache.portals.jetspeed-2/jetspeed 0 - 2.3.1Maven
Published Apr 11, 2016
Tracked Since Feb 18, 2026