CVE-2006-1548

Impact:
Moderate
Public Date:
2006-03-22
CWE:
CWE-79
Bugzilla:
430531: CVE-2006-1548 struts LookupDispatchAction XSS

The MITRE CVE dictionary describes this issue as:

Cross-site scripting (XSS) vulnerability in (1) LookupDispatchAction and possibly (2) DispatchAction and (3) ActionDispatcher in Apache Software Foundation (ASF) Struts before 1.2.9 allows remote attackers to inject arbitrary web script or HTML via the parameter name, which is not filtered in the resulting error message.

Find out more about CVE-2006-1548 from the MITRE CVE dictionary dictionary and NIST NVD.

Red Hat Security Errata

Platform Errata Release Date
Red Hat Application Server 3AS RHSA-2006:0281 2006-05-03
Red Hat Application Server v2 4AS RHSA-2006:0281 2006-05-03

Last Modified

CVE description copyright © 2017, The MITRE Corporation

Close

Welcome! Check out the Getting Started with Red Hat page for quick tours and guides for common tasks.