Описание
Improper Preservation of Permissions in Apache Struts
An access permission override in Apache Struts 2.0.0 to 2.5.20 may cause a Denial of Service when performing a file upload.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2019-0233
- https://cwiki.apache.org/confluence/display/ww/s2-060
- https://launchpad.support.sap.com/#/notes/2982840
- https://www.oracle.com/security-alerts/cpuApr2021.html
- https://www.oracle.com/security-alerts/cpujan2021.html
- https://www.oracle.com/security-alerts/cpuoct2021.html
Пакеты
org.apache.struts:struts2-core
>= 2.0.0, < 2.5.22
2.5.22
Связанные уязвимости
An access permission override in Apache Struts 2.0.0 to 2.5.20 may cause a Denial of Service when performing a file upload.
An access permission override in Apache Struts 2.0.0 to 2.5.20 may cause a Denial of Service when performing a file upload.
An access permission override in Apache Struts 2.0.0 to 2.5.20 may cause a Denial of Service when performing a file upload.
An access permission override in Apache Struts 2.0.0 to 2.5.20 may cau ...
Уязвимость библиотеки struts2-core программной платформы Apache Struts, позволяющая нарушителю вызвать отказ в обслуживании