Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:7786
HistoryNov 14, 2018 - 2:32 a.m.

Denial Of Service (DoS)

2018-11-1402:32:14
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
4

0.014 Low

EPSS

Percentile

86.6%

Apache Struts is vulnerable to denial of service. A remote attacker is able to cause a denial of service condition using a multipart/form-data encoded form with a parameter name that references the getMultipartRequestHandler function which provides access to elements in CommonsMultipartRequestHandler and BeanUtils.

CPENameOperatorVersion
strutsle1.2.8