Update CVE-2019-0230.yaml

patch-1
Geeknik Labs 2021-03-18 16:10:11 +00:00 committed by GitHub
parent bb512e5185
commit 4a22b0225b
No known key found for this signature in database
GPG Key ID: 4AEE18F83AFDEB23
1 changed files with 1 additions and 1 deletions

View File

@ -4,7 +4,7 @@ info:
name: Apache Struts RCE
author: geeknik
description: Apache Struts 2.0.0 to 2.5.20 forced double OGNL evaluation, when evaluated on raw user input in tag attributes, may lead to remote code execution.
reference:
reference:
- https://cwiki.apache.org/confluence/display/WW/S2-059
- https://www.tenable.com/blog/cve-2019-0230-apache-struts-potential-remote-code-execution-vulnerability
severity: high