Vulnerabilities > CVE-2023-34149 - Unspecified vulnerability in Apache Struts
Attack vector
NETWORK Attack complexity
LOW Privileges required
LOW Confidentiality impact
NONE Integrity impact
NONE Availability impact
HIGH Summary
Allocation of Resources Without Limits or Throttling vulnerability in Apache Software Foundation Apache Struts.This issue affects Apache Struts: through 2.5.30, through 6.1.2. Upgrade to Struts 2.5.31 or 6.1.2.1 or greater.
Vulnerable Configurations
References
- http://www.openwall.com/lists/oss-security/2023/06/14/2
- https://cwiki.apache.org/confluence/display/WW/S2-063
- https://security.netapp.com/advisory/ntap-20230706-0005/
- http://www.openwall.com/lists/oss-security/2023/06/14/2
- https://security.netapp.com/advisory/ntap-20230706-0005/
- https://cwiki.apache.org/confluence/display/WW/S2-063