Lucene search

K
f5F5F5:K45474286
HistorySep 08, 2017 - 12:00 a.m.

K45474286 : Apache Struts Freemarker Remote Code Execution vulnerability CVE-2017-12611

2017-09-0800:00:00
my.f5.com
157

9.4 High

AI Score

Confidence

High

0.973 High

EPSS

Percentile

99.9%

Security Advisory Description

In Apache Struts 2.0.1 through 2.3.33 and 2.5 through 2.5.10, using an unintentional expression in a Freemarker tag instead of string literals can lead to a RCE attack. (CVE-2017-12611)

Impact

There is no impact; F5 products are not affected by this vulnerability.