CVE-2019-0230

All FrameworksApache StrutsCWE-OtherCVE-2019-0230

CVE-2019-0230

State: PUBLISHED · Published: 2020-09-14 · Updated: 2024-08-04 · Assigner: apache
Description
Apache Struts 2.0.0 to 2.5.20 forced double OGNL evaluation, when evaluated on raw user input in tag attributes, may lead to remote code execution.
CWE
Affected
CVSS
References
Source
cvelistV5-main/cves/2019/0xxx/CVE-2019-0230.json