Описание
The default exclude patterns (excludeParams) in Apache Struts 2.3.20 allow remote attackers to "compromise internal state of an application" via unspecified vectors.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| libstruts1.2-java | not-affected | package |
Примечания
https://struts.apache.org/docs/s2-024.html
EPSS
Процентиль: 90%
0.06005
Низкий
Связанные уязвимости
ubuntu
больше 10 лет назад
The default exclude patterns (excludeParams) in Apache Struts 2.3.20 allow remote attackers to "compromise internal state of an application" via unspecified vectors.
redhat
больше 10 лет назад
The default exclude patterns (excludeParams) in Apache Struts 2.3.20 allow remote attackers to "compromise internal state of an application" via unspecified vectors.
nvd
больше 10 лет назад
The default exclude patterns (excludeParams) in Apache Struts 2.3.20 allow remote attackers to "compromise internal state of an application" via unspecified vectors.
EPSS
Процентиль: 90%
0.06005
Низкий