References: | Source: MITRE Type: CNA CVE-2019-0230
Source: security@apache.org Type: Exploit, Third Party Advisory, VDB Entry security@apache.org
Source: security@apache.org Type: Exploit, Third Party Advisory, VDB Entry security@apache.org
Source: CCN Type: Apache Struts 2 Documentation S2-059 Forced double OGNL evaluation, when evaluated on raw user input in tag attributes, may lead to remote code execution
Source: security@apache.org Type: Vendor Advisory security@apache.org
Source: XF Type: UNKNOWN apache-struts-cve20190230-code-exec(186702)
Source: security@apache.org Type: Permissions Required security@apache.org
Source: security@apache.org Type: Mailing List, Vendor Advisory security@apache.org
Source: security@apache.org Type: Mailing List, Vendor Advisory security@apache.org
Source: CCN Type: Packet Storm Security [11-17-2020] Apache Struts 2.5.20 Double OGNL Evaluation
Source: CCN Type: Packet Storm Security [12-24-2020] Apache Struts 2 Forced Multi OGNL Evaluation
Source: EXPLOIT-DB Type: EXPLOIT Offensive Security Exploit Database [11-17-2020]
Source: CCN Type: IBM Security Bulletin 6324787 (Sterling File Gateway) Multiple Security Vulnerabilities in Apache Struts Affect IBM Sterling File Gateway (CVE-2019-0233, CVE-2019-0230)
Source: CCN Type: IBM Security Bulletin 6336355 (Tivoli Netcool OMNIbus) Multiple vulnerabilities in Apache Struts affect Tivoli Netcool/OMNIbus WebGUI (CVE-2019-0233, CVE-2019-0230)
Source: CCN Type: IBM Security Bulletin 6347964 (Tivoli Application Dependency Discovery Manager) Vulnerabilities in Apache Struts affect IBM Tivoli Application Dependency Discovery Manager.
Source: CCN Type: IBM Security Bulletin 6356619 (Content Collector) Apache Struts (Publicly disclosed vulnerability) affects Content Collector for Email, Content Collector for File Systems, Content Collector for Microsoft SharePoint and Content Collector for IBM Connections
Source: CCN Type: IBM Security Bulletin 6356621 (Content Collector) Apache Struts (Publicly disclosed vulnerability) affects Content Collector for Email, Content Collector for File Systems, Content Collector for Microsoft SharePoint and Content Collector for IBM Connections
Source: CCN Type: IBM Security Bulletin 6359443 (Content Collector) Apache Struts (Publicly disclosed vulnerability) affects Content Collector for Email, Content Collector for File Systems, Content Collector for Microsoft SharePoint and Content Collector for IBM Connections
Source: CCN Type: IBM Security Bulletin 6359445 (Content Collector) Apache Struts (Publicly disclosed vulnerability) affects Content Collector for Email, Content Collector for File Systems, Content Collector for Microsoft SharePoint and Content Collector for IBM Connections
Source: CCN Type: IBM Security Bulletin 6565845 (Sterling Order Management) IBM Sterling Order Management Apache Struts vulnerablity
Source: CCN Type: IBM Security Bulletin 6620351 (Call Center for Commerce) IBM Call Center and Apache Struts Struts upgrade strategy (various CVEs, see below)
Source: CCN Type: IBM Security Bulletin 6620355 (Sterling Order Management) IBM Sterling Order Management Apache Struts upgrade strategy (various CVEs, see below)
Source: security@apache.org Type: Patch, Third Party Advisory security@apache.org
Source: CCN Type: Oracle CPUJan2021 Oracle Critical Patch Update Advisory - January 2021
Source: security@apache.org Type: Patch, Third Party Advisory security@apache.org
Source: security@apache.org Type: Patch, Third Party Advisory security@apache.org
Source: CCN Type: Rapid7 Vulnerability and Exploit Database [09-14-2020] Apache Struts 2 Forced Multi OGNL Evaluation
|