Описание
The default exclude patterns (excludeParams) in Apache Struts 2.3.20 allow remote attackers to "compromise internal state of an application" via unspecified vectors.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was not-affected [struts 2 only]] |
| precise | not-affected | struts 2 only |
| trusty | not-affected | struts 2 only |
| trusty/esm | DNE | trusty was not-affected [struts 2 only] |
| upstream | needs-triage | |
| utopic | not-affected | struts 2 only |
| vivid | DNE |
Показывать по
10
7.5 High
CVSS2
Связанные уязвимости
redhat
больше 11 лет назад
The default exclude patterns (excludeParams) in Apache Struts 2.3.20 allow remote attackers to "compromise internal state of an application" via unspecified vectors.
nvd
около 11 лет назад
The default exclude patterns (excludeParams) in Apache Struts 2.3.20 allow remote attackers to "compromise internal state of an application" via unspecified vectors.
debian
около 11 лет назад
The default exclude patterns (excludeParams) in Apache Struts 2.3.20 a ...
7.5 High
CVSS2