Home / Vulnerability Database / Config files : Struts misconfiguration: invalid parameters
Config files

Config files : Struts misconfiguration: invalid parameters

Classification

Overview

Struts 1 apps which uses ActionForm are vulnerable to ClassLoader manipulation.

ClassLoader manipulation allows the attackers access and modify settings of the app. On the certain servers like Tomcat 8 an attacker may upload and execute bash scripts.

MEDIUM

DerScanner Severity Score

Do you want to fix Config files : Struts misconfiguration: invalid parameters in your application?

See also

Config files

Config files : Text4Shell Vulnerability

Config files

Config files : Incorrect directory deletion

Config files

Config files : Code injection