CVE-2013-4316

EUVD-2022-4305
Apache Struts 2.0.0 through 2.3.15.1 enables Dynamic Method Invocation by default, which has unknown impact and attack vectors.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
10 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:C/I:C/A:C
Base Score
CVSS 3.x
EPSS Score
Percentile: 90%
Affected Products (NVD)
VendorProductVersion
apachestruts
2.0.0
apachestruts
2.0.1
apachestruts
2.0.2
apachestruts
2.0.3
apachestruts
2.0.4
apachestruts
2.0.5
apachestruts
2.0.6
apachestruts
2.0.7
apachestruts
2.0.8
apachestruts
2.0.9
apachestruts
2.0.10
apachestruts
2.0.11
apachestruts
2.0.11.1
apachestruts
2.0.11.2
apachestruts
2.0.12
apachestruts
2.0.13
apachestruts
2.0.14
apachestruts
2.1.0
apachestruts
2.1.1
apachestruts
2.1.2
apachestruts
2.1.3
apachestruts
2.1.4
apachestruts
2.1.5
apachestruts
2.1.6
apachestruts
2.1.8
apachestruts
2.1.8.1
apachestruts
2.2.1
apachestruts
2.2.1.1
apachestruts
2.2.3
apachestruts
2.2.3.1
apachestruts
2.3.1
apachestruts
2.3.1.1
apachestruts
2.3.1.2
apachestruts
2.3.3
apachestruts
2.3.4
apachestruts
2.3.4.1
apachestruts
2.3.7
apachestruts
2.3.8
apachestruts
2.3.12
apachestruts
2.3.14
apachestruts
2.3.14.1
apachestruts
2.3.14.2
apachestruts
2.3.14.3
apachestruts
2.3.15
apachestruts
2.3.15.1
oracleflexcube_private_banking
1.7
oracleflexcube_private_banking
2.0
oracleflexcube_private_banking
2.0.1
oracleflexcube_private_banking
2.2.0.1
oracleflexcube_private_banking
3.0
oracleflexcube_private_banking
12.0.1
oracleflexcube_private_banking
12.0.2
oraclemysql_enterprise_monitor
𝑥
≤ 2.3.14
oraclemysql_enterprise_monitor
𝑥
≤ 3.0.4
oraclewebcenter_sites
11.1.1.6.1
oraclewebcenter_sites
11.1.1.8.0
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
libstruts1.2-java
lucid
not-affected
precise
not-affected
quantal
not-affected
raring
not-affected
Common Weakness Enumeration