CVE-2017-15707

Publication date

2017-12-01 16:00:00

Family

apache

State

PUBLISHED

Description

In Apache Struts 2.5 to 2.5.14, the REST Plugin is using an outdated JSON-lib library which is vulnerable and allow perform a DoS attack using malicious request with specially crafted JSON payload.