Skip to main content

Configuration

CVE-2013-4316

Severity High
Score 10/10

Summary

Apache Struts through 2.3.15.1 enables Dynamic Method Invocation by default, which has unknown impact and attack vectors.

  • LOW
  • NETWORK
  • NONE
  • COMPLETE
  • COMPLETE
  • COMPLETE

CWE-16 - Configuration

Weaknesses in this category are typically introduced during the configuration of the software.

Advisory Timeline

  • Published