CVE-2013-2248
MEDIUM 5.8EPSS 94.7%
Multiple open redirect vulnerabilities in Apache Struts 2.0.0 through 2.3.15 allow remote attackers to redirect users to arbitrary web sites and conduct phishing attacks via a URL in a parameter using the (1) redirect: or (2) redirectAction: prefix.
- CVSS v2.0
- 5.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:N - EPSS
- 94.65% chance of exploitation in the next 30 days, 100th percentile
- Nuclei
- medium · CWE-20
- Published
- 2013-07-18
- Updated
- 2024-08-06