ソフト名:OpenSymphony XWork 2.0~2.1.1
回避策:あり
脆弱性:セキュリティ制限の回避
ソース:http://struts.apache.org/
http://www.atlassian.com/software/crucible/
http://www.atlassian.com/software/fisheye/
http://blog.o0o.nu/2010/07/cve-2010-1870-struts2xwork-remote.html
http://www.exploit-db.com/exploits/14360/
http://www.opensymphony.com/xwork/
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-1870
http://secunia.com/advisories/40558
http://secunia.com/advisories/40575
http://secunia.com/advisories/40576
CVE:CVE-2010-1870
危険性:High Risk
登録:
コメントの投稿 (Atom)
0 件のコメント:
コメントを投稿