CVE-2013-4212
N/A
N/A
Summary
Certain getText methods in the ActionSupport controller in Apache Roller before 5.0.2 allow remote attackers to execute arbitrary OGNL expressions via the first or second parameter, as demonstrated by the pageTitle parameter in the !getPageTitle sub-URL to roller-ui/login.rol, which uses a subclass of UIAction, aka "OGNL Injection."
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://rollerweblogger.org/project/entry/apache_roller_5_0_2
- http://www.osvdb.org/100342
- http://www.exploit-db.com/exploits/29859
- https://exchange.xforce.ibmcloud.com/vulnerabilities/89239
- http://secunia.com/advisories/55862
- http://security.coverity.com/advisory/2013/Oct/remote-code-execution-in-apache-roller-via-ognl-injection.html
- http://secunia.com/advisories/55877
References
- http://rollerweblogger.org/project/entry/apache_roller_5_0_2
- http://www.osvdb.org/100342
- http://www.exploit-db.com/exploits/29859
- https://exchange.xforce.ibmcloud.com/vulnerabilities/89239
- http://secunia.com/advisories/55862
- http://security.coverity.com/advisory/2013/Oct/remote-code-execution-in-apache-roller-via-ognl-injection.html
- http://secunia.com/advisories/55877
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.