// For flags

CVE-2008-6504

XWork < 2.0.11.2 - 'ParameterInterceptor' Class OGNL Security Bypass

Severity Score

5.0
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

4
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

ParametersInterceptor in OpenSymphony XWork 2.0.x before 2.0.6 and 2.1.x before 2.1.2, as used in Apache Struts and other products, does not properly restrict # (pound sign) references to context objects, which allows remote attackers to execute Object-Graph Navigation Language (OGNL) statements and modify server-side context objects, as demonstrated by use of a \u0023 representation for the # character.

ParametersInterceptor en OpenSymphony XWork 2.0.x antes de 2.0.6 y 2.1.x antes de 2.1.2, tal como se utiliza en Apache Struts y otros productos, no restringe adecuadamente las referencias # (almohadilla) a objetos de contexto, lo que permite a atacantes remotos ejecutar sentencias OGNL (Object-Graph Navigation Language) y modificar los objetos del contexto del lado del servidor contexto objetos, como lo demuestra el uso de una representación \u0023 del carácter #.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
None
Integrity
Partial
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2008-11-04 First Exploit
  • 2009-03-23 CVE Reserved
  • 2009-03-23 CVE Published
  • 2024-08-07 CVE Updated
  • 2024-11-06 EPSS Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
  • CWE-20: Improper Input Validation
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Opensymphony
Search vendor "Opensymphony"
Xwork
Search vendor "Opensymphony" for product "Xwork"
2.0.0
Search vendor "Opensymphony" for product "Xwork" and version "2.0.0"
-
Affected
Opensymphony
Search vendor "Opensymphony"
Xwork
Search vendor "Opensymphony" for product "Xwork"
2.0.1
Search vendor "Opensymphony" for product "Xwork" and version "2.0.1"
-
Affected
Opensymphony
Search vendor "Opensymphony"
Xwork
Search vendor "Opensymphony" for product "Xwork"
2.0.2
Search vendor "Opensymphony" for product "Xwork" and version "2.0.2"
-
Affected
Opensymphony
Search vendor "Opensymphony"
Xwork
Search vendor "Opensymphony" for product "Xwork"
2.0.3
Search vendor "Opensymphony" for product "Xwork" and version "2.0.3"
-
Affected
Opensymphony
Search vendor "Opensymphony"
Xwork
Search vendor "Opensymphony" for product "Xwork"
2.0.4
Search vendor "Opensymphony" for product "Xwork" and version "2.0.4"
-
Affected
Opensymphony
Search vendor "Opensymphony"
Xwork
Search vendor "Opensymphony" for product "Xwork"
2.0.5
Search vendor "Opensymphony" for product "Xwork" and version "2.0.5"
-
Affected
Opensymphony
Search vendor "Opensymphony"
Xwork
Search vendor "Opensymphony" for product "Xwork"
2.1.0
Search vendor "Opensymphony" for product "Xwork" and version "2.1.0"
-
Affected
Opensymphony
Search vendor "Opensymphony"
Xwork
Search vendor "Opensymphony" for product "Xwork"
2.1.1
Search vendor "Opensymphony" for product "Xwork" and version "2.1.1"
-
Affected
Apache
Search vendor "Apache"
Struts
Search vendor "Apache" for product "Struts"
2.0.0
Search vendor "Apache" for product "Struts" and version "2.0.0"
-
Affected
Apache
Search vendor "Apache"
Struts
Search vendor "Apache" for product "Struts"
2.0.2
Search vendor "Apache" for product "Struts" and version "2.0.2"
-
Affected
Apache
Search vendor "Apache"
Struts
Search vendor "Apache" for product "Struts"
2.0.3
Search vendor "Apache" for product "Struts" and version "2.0.3"
-
Affected
Apache
Search vendor "Apache"
Struts
Search vendor "Apache" for product "Struts"
2.0.4
Search vendor "Apache" for product "Struts" and version "2.0.4"
-
Affected
Apache
Search vendor "Apache"
Struts
Search vendor "Apache" for product "Struts"
2.0.5
Search vendor "Apache" for product "Struts" and version "2.0.5"
-
Affected
Apache
Search vendor "Apache"
Struts
Search vendor "Apache" for product "Struts"
2.0.6
Search vendor "Apache" for product "Struts" and version "2.0.6"
-
Affected
Apache
Search vendor "Apache"
Struts
Search vendor "Apache" for product "Struts"
2.0.7
Search vendor "Apache" for product "Struts" and version "2.0.7"
-
Affected
Apache
Search vendor "Apache"
Struts
Search vendor "Apache" for product "Struts"
2.0.8
Search vendor "Apache" for product "Struts" and version "2.0.8"
-
Affected
Apache
Search vendor "Apache"
Struts
Search vendor "Apache" for product "Struts"
2.0.9
Search vendor "Apache" for product "Struts" and version "2.0.9"
-
Affected
Apache
Search vendor "Apache"
Struts
Search vendor "Apache" for product "Struts"
2.0.11
Search vendor "Apache" for product "Struts" and version "2.0.11"
-
Affected
Apache
Search vendor "Apache"
Struts
Search vendor "Apache" for product "Struts"
2.0.11.1
Search vendor "Apache" for product "Struts" and version "2.0.11.1"
-
Affected
Apache
Search vendor "Apache"
Struts
Search vendor "Apache" for product "Struts"
2.0.11.2
Search vendor "Apache" for product "Struts" and version "2.0.11.2"
-
Affected