CVE-2017-5638

CVE Published 2017-03-11
Related CWE(s) CWE-20: Improper Input Validation, CWE-755: Improper Handling of Exceptional Conditions
Related Vendor(s) arubanetworks, hp, oracle, apache, ibm, lenovo, netapp
Related Product(s) clearpass_policy_manager, struts, storwize_v5000_firmware, weblogic_server, storage_v5030_firmware, storwize_v7000_firmware, server_automation, oncommand_balance, storwize_v3500_firmware
Exploitation Reported (CISA KEV) 2021-11-03
CVSS 3 Base Score 9.8 (CRITICAL)
CVSS 3 Attack Complexity LOW
CVSS 3 Attack Vector NETWORK

The Jakarta Multipart parser in Apache Struts 2 2.3.x before 2.3.32 and 2.5.x before 2.5.10.1 has incorrect exception handling and error-message generation during file-upload attempts, which allows remote attackers to execute arbitrary commands via a crafted Content-Type, Content-Disposition, or Content-Length HTTP header, as exploited in the wild in March 2017 with a Content-Type header containing a #cmd= string.

Cyber Threat Graph Context

Explore how this CVE relates to the wider threat graph

Associated CAPEC Patterns

References