Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:3079
HistoryDec 05, 2016 - 3:35 a.m.

Denial Of Service (DoS) Via URLValidator

2016-12-0503:35:11
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8

0.008 Low

EPSS

Percentile

81.4%

Apache struts2 is vulnerable to denial-of-service (DoS) attacks. It does not trim when validating input URL in form files. If built-in URLValidator is used, it is possible for attackers to prepare a special URL which will be used to overload server process when performing validation of the URL, causing DoS attacks.

0.008 Low

EPSS

Percentile

81.4%