CVE-2013-4212

medium
Published 2013-12-07 · Modified 2026-04-29
CVSS v3
CVSS v2
6.8
VIR risk
6.8

Description

Certain getText methods in the ActionSupport controller in Apache Roller before 5.0.2 allow remote attackers to execute arbitrary OGNL expressions via the first or second parameter, as demonstrated by the pageTitle parameter in the !getPageTitle sub-URL to roller-ui/login.rol, which uses a subclass of UIAction, aka "OGNL Injection."

Predictions

Exploit likelihood
20%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: secalert@redhat.com — http://secunia.com/advisories/55877

vendor Authored 2026-05-27

Vendor advisory: secalert@redhat.com — http://secunia.com/advisories/55862

vendor Authored 2026-05-27

Vendor advisory: secalert@redhat.com — http://rollerweblogger.org/project/entry/apache_roller_5_0_2

Application impact

VendorProductVersionsFixed
apache apacheroller{"endIncluding":"5.0.1"}
apache apacheroller4.0
apache apacheroller4.0.1
apache apacheroller5.0

References

CWEs

CWE-94

Verify integrity in audit chain (admin only). AS-IS.