Описание
Apache Struts 2.0.0 through 2.3.4 allows remote attackers to cause a denial of service (CPU consumption) via a long parameter name, which is processed as an OGNL expression.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | only 2.x is affected |
| hardy | not-affected | |
| lucid | not-affected | |
| natty | not-affected | |
| oneiric | not-affected | |
| precise | not-affected | |
| upstream | not-affected |
Показывать по
10
EPSS
Процентиль: 94%
0.08071
Низкий
5 Medium
CVSS2
Связанные уязвимости
nvd
почти 14 лет назад
Apache Struts 2.0.0 through 2.3.4 allows remote attackers to cause a denial of service (CPU consumption) via a long parameter name, which is processed as an OGNL expression.
debian
почти 14 лет назад
Apache Struts 2.0.0 through 2.3.4 allows remote attackers to cause a d ...
CVSS3: 5.3
fstec
около 14 лет назад
Уязвимость программной платформы Apache Struts, связанная с недостатками разграничения доступа, позволяющая нарушителю вызвать отказ в обслуживании
EPSS
Процентиль: 94%
0.08071
Низкий
5 Medium
CVSS2