CVE-2013-4316

Apache Struts 2.0.0 through 2.3.15.1 enables Dynamic Method Invocation by default, which has unknown impact and attack vectors.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
10 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:C/I:C/A:C
redhatCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 91%
VendorProductVersion
apachestruts
2.0.0
apachestruts
2.0.1
apachestruts
2.0.2
apachestruts
2.0.3
apachestruts
2.0.4
apachestruts
2.0.5
apachestruts
2.0.6
apachestruts
2.0.7
apachestruts
2.0.8
apachestruts
2.0.9
apachestruts
2.0.10
apachestruts
2.0.11
apachestruts
2.0.11.1
apachestruts
2.0.11.2
apachestruts
2.0.12
apachestruts
2.0.13
apachestruts
2.0.14
apachestruts
2.1.0
apachestruts
2.1.1
apachestruts
2.1.2
apachestruts
2.1.3
apachestruts
2.1.4
apachestruts
2.1.5
apachestruts
2.1.6
apachestruts
2.1.8
apachestruts
2.1.8.1
apachestruts
2.2.1
apachestruts
2.2.1.1
apachestruts
2.2.3
apachestruts
2.2.3.1
apachestruts
2.3.1
apachestruts
2.3.1.1
apachestruts
2.3.1.2
apachestruts
2.3.3
apachestruts
2.3.4
apachestruts
2.3.4.1
apachestruts
2.3.7
apachestruts
2.3.8
apachestruts
2.3.12
apachestruts
2.3.14
apachestruts
2.3.14.1
apachestruts
2.3.14.2
apachestruts
2.3.14.3
apachestruts
2.3.15
apachestruts
2.3.15.1
oracleflexcube_private_banking
1.7
oracleflexcube_private_banking
2.0
oracleflexcube_private_banking
2.0.1
oracleflexcube_private_banking
2.2.0.1
oracleflexcube_private_banking
3.0
oracleflexcube_private_banking
12.0.1
oracleflexcube_private_banking
12.0.2
oraclemysql_enterprise_monitor
𝑥
≤ 2.3.14
oraclemysql_enterprise_monitor
𝑥
≤ 3.0.4
oraclewebcenter_sites
11.1.1.6.1
oraclewebcenter_sites
11.1.1.8.0
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
libstruts1.2-java
raring
not-affected
quantal
not-affected
precise
not-affected
lucid
not-affected
Common Weakness Enumeration