XWork AltSyntax OGNL Input Validation Vulnerability

Solution:
The vendor released XWork 2.0.4 to address this issue. Please see the references for more information.


Apache Software Foundation Struts 2.0.1

OpenSymphony XWork 2.0.1

OpenSymphony XWork 2.0.2

Apache Software Foundation Struts 2.0.2

OpenSymphony XWork 2.0.3

Apache Software Foundation Struts 2.0.3

Apache Software Foundation Struts 2.0.4

Apache Software Foundation Struts 2.0.5

Apache Software Foundation Struts 2.0.6

Apache Software Foundation Struts 2.0.7

Apache Software Foundation Struts 2.0.8

OpenSymphony WebWork 2.1

OpenSymphony WebWork 2.2

OpenSymphony WebWork 2.2.1

OpenSymphony WebWork 2.2.2

OpenSymphony WebWork 2.2.3

OpenSymphony WebWork 2.2.4

OpenSymphony WebWork 2.2.5


 

Privacy Statement
Copyright 2010, SecurityFocus