CVE-2017-5638
Description
The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception handling and error-message generation during file-upload attempts, which allows remote attackers to execute arbitrary commands via a crafted Content-Type, Content-Disposition, or Content-Length HTTP header, as exploited in the wild in March 2017 with a Content-Type header containing a #cmd= string.
Risk Information
Base Score
9.8
MODERATE
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
94.267
Associated Vulnerability
| Vulnerability | OS Platform |
|---|---|
| Multiple vulnerabilities are affected in Oracle WebLogic Server 10.3.6.0.0 | Windows |
| Multiple vulnerabilities are affected in Oracle WebLogic Server 12.1.3.0.0 | Windows |
| Multiple vulnerabilities are affected in Oracle WebLogic Server 12.1.3.0 | Windows |
| Multiple vulnerabilities are affected in Oracle WebLogic Server 10.3.6.0 | Windows |
| Multiple vulnerabilities are affected in Oracle WebLogic Server 12.2.1.2 | Windows |
| Vulnerabilities CVE-2017-5638 are fixed in Apache-struts2-core 2.3.32 | Windows |
| Vulnerabilities CVE-2017-5638 are fixed in Apache-struts2-core 2.5.10.1 | Windows |
| Multiple vulnerabilities are affected in Oracle WebLogic Server 12.2.1.1 | Windows |
| Multiple vulnerabilities are affected in Oracle WebLogic Server 12.2.1.0 | Windows |
| Multiple vulnerabilities are affected in Oracle WebLogic Server 12.2.1.2.0 | Windows |
| Multiple Vulnerabilities are affected in Netapp Oncommand Balance 2.3 | Windows |
| Multiple Vulnerabilities are affected in Oracle WebLogic Server 12.2.1.1.0 | Windows |
| Vulnerabilities CVE-2017-5638 are fixed in Apache-structs2-core for Linux 2.3.32 | Linux |
| Vulnerabilities CVE-2017-5638 are fixed in Apache-structs2-core for Linux 2.5.10.1 | Linux |
| Apache Struts2 Jakarta Multipart Parser File Upload Code Execution Vulnerability Affecting Cisco Products For Cisco Emergency Responder | NCM |
| Apache Struts2 Jakarta Multipart Parser File Upload Code Execution Vulnerability Affecting Cisco Products For Cisco Finesse | NCM |
| Apache Struts2 Jakarta Multipart Parser File Upload Code Execution Vulnerability Affecting Cisco Products For Cisco MediaSense | NCM |
| Apache Struts2 Jakarta Multipart Parser File Upload Code Execution Vulnerability Affecting Cisco Products For Cisco SocialMiner | NCM |
| Apache Struts2 Jakarta Multipart Parser File Upload Code Execution Vulnerability Affecting Cisco Products For Cisco Unified Contact Center Express | NCM |
| Apache Struts2 Jakarta Multipart Parser File Upload Code Execution Vulnerability Affecting Cisco Products For Cisco Unified Intelligence Center | NCM |
| Apache Struts2 Jakarta Multipart Parser File Upload Code Execution Vulnerability Affecting Cisco Products For Cisco Unity Connection | NCM |
| Apache Struts2 Jakarta Multipart Parser File Upload Code Execution Vulnerability Affecting Cisco Products For Cisco Identity Services Engine | NCM |
| Apache Struts2 Jakarta Multipart Parser File Upload Code Execution Vulnerability Affecting Cisco Products For Cisco Unified Communications Licensing | NCM |
| Apache Struts2 Jakarta Multipart Parser File Upload Code Execution Vulnerability Affecting Cisco Products For Cisco Hosted Collaboration Solution for Contact Center | NCM |
| Improper Handling of Exceptional Conditions Vulnerability (CVE-2017-5638) | NCM |
Patch Details
Click to see the patches provided by ManageEngine for this CVE
| Patch ID | Patch Description |
|---|---|
| PATCH-1706049 | Security Update for Cisco Emergency Responder 12.0(0.98000.50) |
| PATCH-1705887 | Security Update for Cisco Finesse 11.5(0.98000.126) |
| PATCH-1705879 | Security Update for Cisco MediaSense 11.5(1.10000.6) |
| PATCH-1704708 | Security Update for Cisco SocialMiner 12.0(0.99000.293) |
| PATCH-1706052 | Security Update for Cisco Unified Contact Center Express 11.6(1) |
| PATCH-1705886 | Security Update for Cisco Unified Intelligence Center 11.5(0.98000.126) |
| PATCH-1706048 | Security Update for Cisco Unity Connection 12.0(0.97000.184) |
| PATCH-1706002 | Security Update for Cisco Identity Services Engine 2.0(0.905) |
| PATCH-1706042 | Security Update for Cisco Unified Communications Licensing 11.5(1.12001.2) |
References
https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234