CVE-2017-7672
CVSS v3.0
5.9 (Medium)
CVSS v2.0
4.3 (Medium)
EPSS
3.85 % (92th)
Affected Products
1
Advisories
1
If an application allows enter an URL in a form field and built-in URLValidator is used, it is possible to prepare a special URL which will be used to overload server process when performing validation of the URL. Solution is to upgrade to Apache Struts version 2.5.12.
- CVE Status
- PUBLISHED
- CNA
- Apache Software Foundation
- Published Date
-
2017-07-13 15:29:00
(7 years ago) - Updated Date
-
2023-11-07 02:50:14
(10 months ago)
Affected Products
Loading...
Loading...
Loading...
Configuration #1
|
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...