296,746
Total vulnerabilities in the database
Apache Struts 2.0.0 through 2.3.15 allows remote attackers to execute arbitrary OGNL expressions via a parameter with a crafted (1) action:, (2) redirect:, or (3) redirectAction: prefix.
| Software | From | Fixed in |
|---|---|---|
org.apache.struts / struts2-core
|
- | 2.3.15.1 |
| apache / archiva | 1.2.2 | 1.2.2.x |
| apache / archiva | 1.2 | 1.2.x |
| apache / struts | 2.0.0 | 2.3.15.x |
| apache / archiva | 1.3 | 1.3.8 |
| fujitsu / interstage_business_process_manager_analytics | 12.0 | 12.0.x |
| fujitsu / interstage_business_process_manager_analytics | 12.1 | 12.1.x |
| oracle / siebel_apps_-_e-billing | 6.1.1 | 6.1.1.x |
| oracle / siebel_apps_-_e-billing | 6.2 | 6.2.x |
| oracle / siebel_apps_-_e-billing | 6.1 | 6.1.x |