CVE-2014-0112 ParametersInterceptor in Apache Struts before 2.3.16.2 does not properly restrict access to the getClass method
対策
RESOLUTION:
This Hotfix applies to the Stat central agent. Refer to the Stat_5.7.0HF-f_Readme_20141003_Eng.pdf if you are running Stat 5.7.0 or Knowledgebase solution 133610 for additional information and instructions on implementing the fix. Refer to Stat_5.7.1HF-c_Readme_20141003_Eng.pdf if you are running Stat 5.7.1.