期刊文献+

浅析Struts2两个安全漏洞的原理、利用与防范 被引量:3

Analysis of two Struts2 Security vulnerabilities Principle,Utilization and Protection
下载PDF
导出
摘要 Struts2是一种web开发框架,当前被广泛应用到大型互联网企业、政府及金融机构的网站建设中。由于Struts2的相对底层性,导致整个web系统对其安全性的依赖程度很高。近期,Apache公司公布了Struts2的两个安全漏洞,引起业界的高度重视,本文将介绍Struts2的基本概念及这两个漏洞形成的原理,并详细介绍其利用方式及给出利用示例,同时在给出漏洞防范措施的基础上对此类安全问题的防范进行总结和思考。 Structs2 is a web development framework widely applied to website building in large internet companies,the government and financial institutions.As a website bottom template,the whole web system is heavily dependent on its safety.Recently Apache has revealed two security vulnerabilities of Structs2, drawing much attention.This paper introduces Structs2’s basic concept and the forming principle of its two vulnerabilities,illustrates how to utilize them with examples,and concludes with the way to prevent them.
出处 《电子测试》 2014年第10X期61-63,共3页 Electronic Test
关键词 STRUTS2 Struts2漏洞 OGNL WEBWORK Struts2 Struts2 vulnerabilities OGNL Webwork
  • 相关文献

参考文献3

二级参考文献10

  • 1张维明,宋峻峰.面向语义Web的领域本体表示、推理与集成研究[J].计算机研究与发展,2006,43(1):101-108. 被引量:17
  • 2陶皖,姚红燕.OWL本体关系数据库存储模式设计[J].计算机技术与发展,2007,17(2):111-114. 被引量:8
  • 3Chen Cuiming,Haarslev V,Wang Jiaoyue.LAS:Extending Racer by a Large Abox Store[C]//Proc.of CEUR'05.Edinburgh,Scotland,UK:[s.n.],2005:200-207.
  • 4Horrocks I,Li Lei,Tuff D,et al.The Instance Store:DL Reasoning with Large Numbers of Individuals[C]//Proc.of the Workshop on Description Logics.Montreal,Canada:[s.n.],2004:31-40.
  • 5Guo Yanbo,Pan Zhengxiang,Heflin J.LUBM:A Benchmark for OWL Knowledge Based Systems[J].Journal of Web Semantics,2005,3(1):158-182.
  • 6Apache Software Foundation.Apache Struts2Documentation. http://struts.apache.org/2.x/index.html . 2008
  • 7Johnson R,Hoeller J,Arendsen A.Spring Java/J2EE Appli-cation Framework. http://www.springframework.org/docs/reference/index.html . 2004
  • 8Walls G,,Breidenbach R.Spring in Action[]..2005
  • 9Hibernate Annotations. http://www.hibernate.org/247.html .
  • 10Christian Bauer,Gavin King.Java Persistence with Hibernate[]..2007

共引文献21

同被引文献29

引证文献3

二级引证文献20

相关作者

内容加载中请稍等...

相关机构

内容加载中请稍等...

相关主题

内容加载中请稍等...

浏览历史

内容加载中请稍等...
;
使用帮助 返回顶部