Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2015-0254

Опубликовано: 09 мар. 2015
Источник: ubuntu
Приоритет: medium
CVSS2: 7.5

Описание

Apache Standard Taglibs before 1.2.3 allows remote attackers to execute arbitrary code or conduct external XML entity (XXE) attacks via a crafted XSLT extension in a (1) <x:parse> or (2) <x:transform> JSTL XML tag.

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

released

1.1.2-2ubuntu1.14.04.1
esm-infra/xenial

released

1.1.2-3ubuntu1
lucid

DNE

precise

ignored

end of life
precise/esm

DNE

precise was needed
trusty

released

1.1.2-2ubuntu1.14.04.1
trusty/esm

released

1.1.2-2ubuntu1.14.04.1
upstream

released

1.1.2-3
utopic

released

1.1.2-2ubuntu1.14.10.1

Показывать по

7.5 High

CVSS2

Связанные уязвимости

CVSS3: 7.6
redhat
больше 10 лет назад

Apache Standard Taglibs before 1.2.3 allows remote attackers to execute arbitrary code or conduct external XML entity (XXE) attacks via a crafted XSLT extension in a (1) <x:parse> or (2) <x:transform> JSTL XML tag.

nvd
больше 10 лет назад

Apache Standard Taglibs before 1.2.3 allows remote attackers to execute arbitrary code or conduct external XML entity (XXE) attacks via a crafted XSLT extension in a (1) <x:parse> or (2) <x:transform> JSTL XML tag.

debian
больше 10 лет назад

Apache Standard Taglibs before 1.2.3 allows remote attackers to execut ...

suse-cvrf
около 8 лет назад

Security update for jakarta-taglibs-standard

suse-cvrf
около 8 лет назад

Security update for jakarta-taglibs-standard

7.5 High

CVSS2