CVE-2016-4436

critical
New! CVE Severity Now Using CVSS v3

The calculated severity for CVEs has been updated to use CVSS v3 by default. CVEs that do not have a CVSS v3 score will fall back CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.

Description

Apache Struts 2 before 2.3.29 and 2.5.x before 2.5.1 allow attackers to have unspecified impact via vectors related to improper action name clean up.

References

http://www.oracle.com/technetwork/security-advisory/cpujul2017-3236622.html

http://www.securityfocus.com/bid/91280

http://www-01.ibm.com/support/docview.wss?uid=ssg1S1009282

http://www-01.ibm.com/support/docview.wss?uid=swg21987854

https://struts.apache.org/docs/s2-035.html

Details

Source: MITRE

Published: 2016-10-03

Updated: 2017-08-09

Risk Information

CVSS v2

Base Score: 7.5

Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Impact Score: 6.4

Exploitability Score: 10

Severity: HIGH

CVSS v3

Base Score: 9.8

Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Impact Score: 5.9

Exploitability Score: 3.9

Severity: CRITICAL

Vulnerable Software

Configuration 1

OR

cpe:2.3:a:apache:struts:2.0.0:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.0.1:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.0.2:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.0.3:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.0.4:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.0.5:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.0.6:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.0.7:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.0.8:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.0.9:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.0.11:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.0.11.1:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.0.11.2:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.0.12:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.0.14:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.1.6:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.1.8:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.1.8.1:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.2.1:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.2.1.1:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.2.3:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.2.3.1:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.3.1:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.3.1.1:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.3.1.2:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.3.3:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.3.4:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.3.4.1:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.3.7:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.3.8:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.3.12:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.3.14:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.3.14.1:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.3.14.2:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.3.14.3:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.3.15:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.3.15.1:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.3.15.2:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.3.15.3:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.3.16:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.3.16.1:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.3.16.2:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.3.16.3:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.3.20:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.3.20.1:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.3.20.3:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.3.24:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.3.24.1:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.3.24.3:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.3.28:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.3.28.1:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.5:*:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.5:beta1:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.5:beta2:*:*:*:*:*:*

cpe:2.3:a:apache:struts:2.5:beta3:*:*:*:*:*:*

Tenable Plugins

View all (2 total)

IDNameProductFamilySeverity
99593MySQL Enterprise Monitor 3.1.x < 3.1.7.8023 / 3.2.x < 3.2.7.1204 / 3.3.x < 3.3.3.1199 Multiple Vulnerabilities (April 2017 CPU)NessusCGI abuses
critical
91812Apache Struts 2.x < 2.3.29 Multiple Vulnerabilities (S2-035 - S2-040)NessusMisc.
high