Lucene search

K
prionPRIOn knowledge basePRION:CVE-2006-1546
HistoryMar 30, 2006 - 10:02 p.m.

Input validation

2006-03-3022:02:00
PRIOn knowledge base
www.prio-n.com
5

9.2 High

AI Score

Confidence

High

0.015 Low

EPSS

Percentile

87.3%

Apache Software Foundation (ASF) Struts before 1.2.9 allows remote attackers to bypass validation via a request with a ‘org.apache.struts.taglib.html.Constants.CANCEL’ parameter, which causes the action to be canceled but would not be detected from applications that do not use the isCancelled check.

CPENameOperatorVersion
strutsle1.2.8

9.2 High

AI Score

Confidence

High

0.015 Low

EPSS

Percentile

87.3%