info
discussion
exploit
solution
references
XWork AltSyntax OGNL Input Validation Vulnerability
References:
Struts 2 User input is evaluated as an OGNL expression
(Apache)
XWork 1.2.3 Released
(OpenSymphoney)
XWork Homepage
(OpenSymphony)
Privacy Statement
Copyright 2010, SecurityFocus