7.8
CVSSv2

CVE-2006-1547

Published: 30/03/2006 Updated: 20/07/2017
CVSS v2 Base Score: 7.8 | Impact Score: 6.9 | Exploitability Score: 10
VMScore: 694
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C

Vulnerability Summary

ActionForm in Apache Software Foundation (ASF) Struts prior to 1.2.9 with BeanUtils 1.7 allows remote malicious users to cause a denial of service via a multipart/form-data encoded form with a parameter name that references the public getMultipartRequestHandler method, which provides further access to elements in the CommonsMultipartRequestHandler implementation and BeanUtils.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apache struts 1.2.7

apache struts

Github Repositories

StrutsExample-1547 CVE-2006-1547: ActionForm in Apache Software Foundation (ASF) Struts before 129 with BeanUtils 17(Commons bean utils) allows remote attackers to cause a denial of service via a multipart/form-data encoded form with a parameter name that references the public getMultipartRequestHandler method, which provides further access to elements in the CommonsMultipar