Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-0113

Опубликовано: 29 апр. 2014
Источник: ubuntu
Приоритет: medium
EPSS Высокий
CVSS2: 7.5

Описание

CookieInterceptor in Apache Struts before 2.3.20, when a wildcard cookiesName value is used, does not properly restrict access to the getClass method, which allows remote attackers to "manipulate" the ClassLoader and execute arbitrary code via a crafted request. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-0094.

РелизСтатусПримечание
artful

DNE

bionic

DNE

cosmic

DNE

devel

DNE

disco

DNE

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was needed]
lucid

ignored

end of life
precise

ignored

end of life
precise/esm

DNE

precise was needed
quantal

ignored

end of life

Показывать по

EPSS

Процентиль: 99%
0.88063
Высокий

7.5 High

CVSS2

Связанные уязвимости

redhat
больше 11 лет назад

CookieInterceptor in Apache Struts before 2.3.20, when a wildcard cookiesName value is used, does not properly restrict access to the getClass method, which allows remote attackers to "manipulate" the ClassLoader and execute arbitrary code via a crafted request. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-0094.

nvd
больше 11 лет назад

CookieInterceptor in Apache Struts before 2.3.20, when a wildcard cookiesName value is used, does not properly restrict access to the getClass method, which allows remote attackers to "manipulate" the ClassLoader and execute arbitrary code via a crafted request. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-0094.

debian
больше 11 лет назад

CookieInterceptor in Apache Struts before 2.3.20, when a wildcard cook ...

github
больше 3 лет назад

ClassLoader manipulation in Apache Struts

CVSS3: 7.1
fstec
больше 11 лет назад

Уязвимость реализации метода getClass класса CookieInterceptor программной платформы Apache Struts, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 99%
0.88063
Высокий

7.5 High

CVSS2