CVE-2016-4465
04.07.2016, 22:59
The URLValidator class in Apache Struts 2 2.3.20 through 2.3.28.1 and 2.5.x before 2.5.1 allows remote attackers to cause a denial of service via a null value for a URL field.Enginsight
Vendor | Product | Version |
---|---|---|
apache | struts | 2.3.20 |
apache | struts | 2.3.20.1 |
apache | struts | 2.3.20.3 |
apache | struts | 2.3.24 |
apache | struts | 2.3.24.1 |
apache | struts | 2.3.24.3 |
apache | struts | 2.3.28 |
apache | struts | 2.3.28.1 |
apache | struts | 2.5 |
apache | struts | 2.5:beta1 |
apache | struts | 2.5:beta2 |
apache | struts | 2.5:beta3 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration
References