CVE-2014-0094
11.03.2014, 13:00
The ParametersInterceptor in Apache Struts before 2.3.16.2 allows remote attackers to "manipulate" the ClassLoader via the class parameter, which is passed to the getClass method.Enginsight
| Vendor | Product | Version |
|---|---|---|
| apache | struts | 2.0.0 ≤ 𝑥 < 2.3.16.1 |
𝑥
= Vulnerable software versions
Ubuntu Releases
References