The Equifax data breach case was solved, that incident was caused by the exploitation of the CVE-2017-5638 Apache Struts vulnerability. The vulnerability affects the Jakarta Multipart parser upload function in Apache and could be exploited by an attacker to make a maliciously crafted request to an Apache web server. It was fixed back in March, but the company did not update its systems, the thesis was also reported by an Apache spokeswoman to the Reuters agency. The website of Equifax was updated only Wednesday while the company and law enforcement were investigating the incident.”]
Source: http://securityaffairs.co/wordpress/63043/hacking/equifax-data-breach.html