Описание
The MultiPageValidator implementation in Apache Struts 1 1.1 through 1.3.10 allows remote attackers to bypass intended access restrictions via a modified page parameter.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | DNE | |
| bionic | DNE | |
| cosmic | DNE | |
| devel | DNE | |
| disco | DNE | |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was needed] |
| lucid | ignored | end of life |
| precise | released | 1.2.9-5+deb7u2build0.12.04.1 |
| precise/esm | DNE | precise was released [1.2.9-5+deb7u2build0.12.04.1] |
| trusty | ignored | end of standard support |
Показывать по
EPSS
5 Medium
CVSS2
7.5 High
CVSS3
Связанные уязвимости
The MultiPageValidator implementation in Apache Struts 1 1.1 through 1.3.10 allows remote attackers to bypass intended access restrictions via a modified page parameter.
The MultiPageValidator implementation in Apache Struts 1 1.1 through 1.3.10 allows remote attackers to bypass intended access restrictions via a modified page parameter.
The MultiPageValidator implementation in Apache Struts 1 1.1 through 1 ...
Уязвимость программной платформы Apache Struts, позволяющая нарушителю обойти существующие ограничения доступа
EPSS
5 Medium
CVSS2
7.5 High
CVSS3