CVE-2013-4310
CVE-2013-4310
Apache Struts 2.0.0 through 2.3.15.1 allows remote attackers to bypass access controls via a crafted action: prefix.
Affected products
n/a · n/aWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://archives.neohapsis.com/archives/bugtraq/2013-09/0107.htmlhttp://archives.neohapsis.com/archives/bugtraq/2013-10/0083.htmlhttp://secunia.com/advisories/54919http://secunia.com/advisories/56483http://secunia.com/advisories/56492http://struts.apache.org/release/2.3.x/docs/s2-018.htmlhttp://www.oracle.com/technetwork/topics/security/cpujan2014-1972949.htmlhttp://www.securityfocus.com/bid/64758http://www.securitytracker.com/id/1029077