RSS   Vulnerabilities for 'Spring framework'   RSS

2015-02-19
 
CVE-2014-3578

CWE-22
 

 
Directory traversal vulnerability in Pivotal Spring Framework 3.x before 3.2.9 and 4.0 before 4.0.5 allows remote attackers to read arbitrary files via a crafted URL.

 
2014-11-20
 
CVE-2014-3625

CWE-22
 

 
Directory traversal vulnerability in Pivotal Spring Framework 3.0.4 through 3.2.x before 3.2.12, 4.0.x before 4.0.8, and 4.1.x before 4.1.2 allows remote attackers to read arbitrary files via unspecified vectors, related to static resource handling.

 

 >>> Vendor: Pivotal 22 Products
Tc server
Operations manager
Spring framework
Rabbitmq
Cloud foundry elastic runtime
Cloud foundry
Cf-release
Capi-release
Bosh stemcell
Spring security oauth
Routing-release
Spring web flow
Pcf tile generator
UAA
Elastic runtime
Uaa-release
Uaa bosh
Spring-flex
Cloud foundry php buildpack
Tc runtimes
Reactor netty
Vmware harbor registry


Copyright 2024, cxsecurity.com

 

Back to Top