...
Who should read this | All Struts 2 developers and users |
---|---|
Impact of vulnerability | A DoS attack is available for Spring secured actions |
Maximum security rating | Low |
Recommendation | Upgrade to Struts 2.5.13 or Struts 2.3.34 |
Affected Software | Struts 2.3.7 - Struts 2.3.33, Struts 2.5 - Struts 2.5.12 |
Reporter | Adam Cazzolla <acazzolla at sonatype dot com>, Jonathan Bullock <jonbullock at gmail dot com> |
CVE Identifier | CVE-2017-9804 |
...