Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
6.1
CVSSv3
CVE-2015-5169
Published: 25/09/2017 Updated: 23/11/2018
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N
Subscribe to Struts
Vulnerability Summary
Cross-site scripting (XSS) vulnerability in Apache Struts prior to 2.3.20.
Vulnerable Product
Search on Vulmon
Subscribe to Product
apache struts
Vendor Advisories
Red Hat: CVE-2015-5169
Cross-site scripting (XSS) vulnerability in Apache Struts before 2320 ...
References
CWE-79
https://struts.apache.org/docs/s2-025.html
https://bugzilla.redhat.com/show_bug.cgi?id=1260087
http://www.securityfocus.com/bid/76625
http://jvndb.jvn.jp/en/contents/2015/JVNDB-2015-000125.html
http://jvn.jp/en/jp/JVN95989300/index.html
https://security.netapp.com/advisory/ntap-20180629-0003/
https://nvd.nist.gov
https://access.redhat.com/security/cve/cve-2015-5169
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
CVE-2022-38028
CVE-2024-32406
CVE-2024-25624
IMAP
CVE-2024-2310
CVE-2024-0874
CVE-2024-20359
XXE
remote code execution
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started