安全ID : QSA-22-09

Remote Code Execution Vulnerability in Apache Struts


  • 发布日期 : April 18, 2022

  • 通用漏洞披露 : CVE-2020-17530 | CVE-2021-31805

  • 未受影响产品: QNAP products

严重程度

状态

未受影响


Summary

A remote code execution vulnerability has been reported to affect Apache Struts versions 2.0.0 to 2.5.29. A previous fix for the vulnerability was found to be incomplete. If exploited, the vulnerability allows remote attackers to run arbitrary commands.

QNAP products are not affected.

修订历史: V1.0 (April 18, 2022) - Published

选择规格

      显示更多 隐藏更多
      open menu
      back to top