VDB
WID-SEC-W-2023-2346
WID-SEC-W-2023-2346
PUBLISHED
CVSS 8.699999809265137 HIGH
Struts ist ein Framework für Java-Anwendungen auf dem Webserver Apache.
Risk Scores
CVSS v4.0
8.699999809265137
CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/VI:N/VA:H/SC:N/SI:N/SA:N
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Atlassian Confluence <8.8.0 | ||
| Apache Struts 6.3.0.1 | ||
| Atlassian Confluence 8.5.5 | ||
| Atlassian Confluence Server 8.5.6 LTS | ||
| Apache Struts 6.1.2.2 | ||
| Apache Struts <6.1.2.2 | ||
| Apache Struts <6.3.0.1 | ||
| Atlassian Confluence 8.5 | ||
| Atlassian Confluence <8.7.2 | ||
| Atlassian Confluence 8.7 | ||
| Apache Struts <2.5.32 | ||
| Atlassian Confluence Data Center 8.8.0 | ||
| Atlassian Confluence <7.19.18 | ||
| Atlassian Confluence Data Center <8.8.0 | ||
| Atlassian Confluence 8.8.0 | ||
| Atlassian Confluence Server <8.5.6 LTS | ||
| Atlassian Confluence <8.5.5 | ||
| Apache Struts 2.5.32 | ||
| Atlassian Confluence 7.19.18 | ||
| Atlassian Confluence 8.7.2 |
Timeline
- Sep 13, 2023 CVE Published
- Sep 2, 2024 CVE Updated
References
- https://wid.cert-bund.de/.well-known/csaf/white/2023/wid-sec-w-2023-2346.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2023-2346 advisory
- https://www.ibm.com/support/pages/node/7095695 url
- https://www.ibm.com/support/pages/node/7099297 url
- https://cwiki.apache.org/confluence/display/WW/S2-065 url
- https://confluence.atlassian.com/security/security-bulletin-february-20-2024-1354501606.html url
- https://jira.atlassian.com/browse/CONFSERVER-93825 url
- https://jira.atlassian.com/browse/CONFSERVER-93827 url
- https://www.ibm.com/support/pages/node/7085934 url
- http://jira.atlassian.com/browse/CONFSERVER-94106 url
- https://www.dell.com/support/kbdoc/de-de/000226407/dsa-2024-280-security-update-for-dell-avamar-and-dell-avamar-virtual-edition-multiple-security-vulnerabilities url
- https://support.hcltechsw.com/csm?id=kb_article&sysparm_article=KB0109323 url