Back

HIGH KEV

security flaw

Published Mar 30, 2006 ·Due Jul 21, 2022

Description

ActionForm in Apache Software Foundation (ASF) Struts before 1.2.9 with BeanUtils 1.7 allows remote attackers to cause a denial of service via a multipart/form-data encoded form with a parameter name that references the public getMultipartRequestHandler method, which provides further access to elements in the CommonsMultipartRequestHandler implementation and BeanUtils.

Affected products

Remediation

No remediation recorded yet.

References (16)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner redhat
Published Mar 30, 2006
Updated Oct 22, 2025
Reserved Mar 30, 2006
CISA Vulnrichment
Updated Feb 7, 2025
NVD
Status Analyzed
Modified Jun 16, 2026
Red Hat
Severity Moderate
Public date Mar 22, 2006
GHSA-7QWV-CWGJ-C8RJ