Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
ActionForm in Apache Software Foundation (ASF) Struts before 1.2.9 with BeanUtils 1.7 allows remote attackers to cause a denial of service via a multipart/form-data encoded form with a parameter name that references the public getMultipartRequestHandler method, which provides further access to elements in the CommonsMultipartRequestHandler implementation and BeanUtils.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apache Software Foundation (ASF) Struts ActionForm拒绝服务漏洞
Vulnerability Description
在Apache Software Foundation (ASF) Struts 1.2.9之前版本和BeanUtils 1.7中的ActionForm可以让远程攻击者通过以下途径制造一个拒绝服务:一个multipart/form-data encoded形式并带一个指向公共getMultipartRequestHandler方法的参数名,以提供对CommonsMultipartRequestHandler实施和BeanUtils中的元素作进一步访问。
CVSS Information
N/A
Vulnerability Type
N/A