Lucene search

K
f5F5F5:K17449
HistoryOct 16, 2015 - 12:00 a.m.

K17449 : Apache Struts 2 vulnerability CVE-2015-5169

2015-10-1600:00:00
my.f5.com
17

6.2 Medium

AI Score

Confidence

High

0.005 Low

EPSS

Percentile

76.0%

Security Advisory Description

Cross-site scripting (XSS) vulnerability in Apache Struts before 2.3.20. (CVE-2015-5169)

When debug mode is switched on in Apache Struts, under certain conditions, an arbitrary script may be executed in the ‘Problem Report’ screen. Affected versions are Struts 2.0.0 - 2.3.16.3.

Impact

There is no impact; F5 products are not affected by this vulnerability.

6.2 Medium

AI Score

Confidence

High

0.005 Low

EPSS

Percentile

76.0%