Описание
The default exclude patterns (excludeParams) in Apache Struts 2.3.20 allow remote attackers to "compromise internal state of an application" via unspecified vectors.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was not-affected [struts 2 only]] |
| precise | not-affected | struts 2 only |
| trusty | not-affected | struts 2 only |
| trusty/esm | DNE | trusty was not-affected [struts 2 only] |
| upstream | needs-triage | |
| utopic | not-affected | struts 2 only |
| vivid | DNE |
Показывать по
10
EPSS
Процентиль: 90%
0.06005
Низкий
7.5 High
CVSS2
Связанные уязвимости
redhat
больше 10 лет назад
The default exclude patterns (excludeParams) in Apache Struts 2.3.20 allow remote attackers to "compromise internal state of an application" via unspecified vectors.
nvd
больше 10 лет назад
The default exclude patterns (excludeParams) in Apache Struts 2.3.20 allow remote attackers to "compromise internal state of an application" via unspecified vectors.
debian
больше 10 лет назад
The default exclude patterns (excludeParams) in Apache Struts 2.3.20 a ...
EPSS
Процентиль: 90%
0.06005
Низкий
7.5 High
CVSS2