Total vulnerabilities in the database
The Struts 1 plugin in Apache Struts 2.1.x and 2.3.x might allow remote code execution via a malicious field value passed in a raw message to the ActionMessage.
Software | From | Fixed in |
---|---|---|
apache / struts | 2.3.1.1 | 2.3.1.1.x |
apache / struts | 2.3.28 | 2.3.28.x |
apache / struts | 2.3.15 | 2.3.15.x |
apache / struts | 2.3.14 | 2.3.14.x |
apache / struts | 2.3.32 | 2.3.32.x |
apache / struts | 2.3.16 | 2.3.16.x |
apache / struts | 2.3.24.1 | 2.3.24.1.x |
apache / struts | 2.3.3 | 2.3.3.x |
apache / struts | 2.3.16.3 | 2.3.16.3.x |
apache / struts | 2.3.4 | 2.3.4.x |
apache / struts | 2.3.24.3 | 2.3.24.3.x |
apache / struts | 2.3.15.2 | 2.3.15.2.x |
apache / struts | 2.3.29 | 2.3.29.x |
apache / struts | 2.3.14.3 | 2.3.14.3.x |
apache / struts | 2.3.4.1 | 2.3.4.1.x |
apache / struts | 2.3.20.1 | 2.3.20.1.x |
apache / struts | 2.3.8 | 2.3.8.x |
apache / struts | 2.3.30 | 2.3.30.x |
apache / struts | 2.3.7 | 2.3.7.x |
apache / struts | 2.3.24 | 2.3.24.x |
apache / struts | 2.3.28.1 | 2.3.28.1.x |
apache / struts | 2.3.14.2 | 2.3.14.2.x |
apache / struts | 2.3.20.3 | 2.3.20.3.x |
apache / struts | 2.3.15.1 | 2.3.15.1.x |
apache / struts | 2.3.1 | 2.3.1.x |
apache / struts | 2.3.16.2 | 2.3.16.2.x |
apache / struts | 2.3.12 | 2.3.12.x |
apache / struts | 2.3.1.2 | 2.3.1.2.x |
apache / struts | 2.3.31 | 2.3.31.x |
apache / struts | 2.3.20 | 2.3.20.x |
apache / struts | 2.3.15.3 | 2.3.15.3.x |
apache / struts | 2.3.16.1 | 2.3.16.1.x |
apache / struts | 2.3.14.1 | 2.3.14.1.x |
![]() |
- | 2.3.37.x |