RSS   Vulnerabilities for 'Spring framework'   RSS

2015-02-19
 
CVE-2014-3578

CWE-22
 

 
Directory traversal vulnerability in Pivotal Spring Framework 3.x before 3.2.9 and 4.0 before 4.0.5 allows remote attackers to read arbitrary files via a crafted URL.

 
2014-11-20
 
CVE-2014-3625

CWE-22
 

 
Directory traversal vulnerability in Pivotal Spring Framework 3.0.4 through 3.2.x before 3.2.12, 4.0.x before 4.0.8, and 4.1.x before 4.1.2 allows remote attackers to read arbitrary files via unspecified vectors, related to static resource handling.

 

 >>> Vendor: Pivotal 22 Products
Spring framework
Cloud foundry elastic runtime
Operations manager
Rabbitmq
Spring security oauth
Spring web flow
Pcf tile generator
UAA
Elastic runtime
Uaa-release
Cloud foundry
Bosh stemcell
Cf-release
Routing-release
Capi-release
Uaa bosh
Spring-flex
Cloud foundry php buildpack
Tc runtimes
Tc server
Reactor netty
Vmware harbor registry


Copyright 2024, cxsecurity.com

 

Back to Top