PT-2025-35870 · Apache · Apache Struts

CVE-2025-36890

·

Publicado

2025-09-04

·

Atualizado

2025-09-09

CVSS v3.1

9.8

Crítica

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions Apache Struts (affected versions not specified)
Description The software contains an elevation of privilege issue.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

LPE

Improper Privilege Management

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2025-36890

Produtos afetados

Apache Struts