Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Cross-site scripting (XSS) vulnerability in (1) LookupDispatchAction and possibly (2) DispatchAction and (3) ActionDispatcher in Apache Software Foundation (ASF) Struts before 1.2.9 allows remote attackers to inject arbitrary web script or HTML via the parameter name, which is not filtered in the resulting error message.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Apache Struts多个远程漏洞
Vulnerability Description
在Apache Software Foundation (ASF) Struts 1.2.9之前版本的(1) LookupDispatchAction和可能(2) DispatchAction和(3) ActionDispatcher中存在跨站脚本攻击(XSS)漏洞,远程攻击者可通过在结果出错短信中未加过滤的参数名称,注入任意Web脚本和HTML。
CVSS Information
N/A
Vulnerability Type
N/A