Vulnerabilities > CVE-2019-0233 - Improper Preservation of Permissions vulnerability in multiple products

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH
network
low complexity
apache
oracle
CWE-281

Summary

An access permission override in Apache Struts 2.0.0 to 2.5.20 may cause a Denial of Service when performing a file upload.

Vulnerable Configurations

Part Description Count
Application
Apache
113
Application
Oracle
86

Common Weakness Enumeration (CWE)