VDB

CVE-2017-15707

CVE-2017-15707 PUBLISHED CVSS 6.199999809265137 MEDIUM

Moderate severity vulnerability that affects org.apache.struts:struts2-rest-plugin

EPSS 1.53% · 81.7th percentile

Risk Scores

CVSS 3.0
6.199999809265137
CVSS:3.0/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
EPSS Score
1.53%
81.7th percentile

Affected Products

VendorProductVersions
oracleenterprise_manager_for_virtualization13.2.3, 13.2.2
oracleretail_xstore_point_of_service7.1.6, 7.0.6, 16.0.2
oracleweblogic_server12.2.1.3, 12.2.1.2
apachestruts2.5
Apache Software FoundationApache Struts*
oracleglobal_lifecycle_management_opatchauto
oraclewebcenter_portal12.2.1.2.0, 12.2.1.3.0
netapponcommand_balance
ApacheStruts
oraclefinancial_services_market_risk_measurement_and_management8.0.5
oraclejd_edwards_enterpriseone_tools9.2
oraclefinancial_services_hedge_management_and_ifrs_valuations8.0.4, 8.0.5
oracleretail_order_broker5.2
Mavenorg.apache.struts:struts2-rest-plugin2.5.0
oracleagile_plm_framework9.3.6

Timeline

  • Dec 1, 2017 CVE Published
  • Dec 2, 2017 PoC Published
  • Apr 26, 2019 CVE Updated
  • Apr 14, 2021 EPSS Score
  • Jun 23, 2021 EPSS Score
  • Oct 26, 2021 EPSS Score
  • Dec 27, 2021 EPSS Score
  • Feb 4, 2022 EPSS Score
  • Feb 28, 2022 EPSS Score
  • Jul 3, 2022 EPSS Score
  • Sep 5, 2022 EPSS Score
  • Nov 6, 2022 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›