Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2014-3578

Опубликовано: 19 фев. 2015
Источник: debian

Описание

Directory traversal vulnerability in Pivotal Spring Framework 3.x before 3.2.9 and 4.0 before 4.0.5 allows remote attackers to read arbitrary files via a crafted URL.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
libspring-javafixed3.2.13-1package
libspring-javano-dsawheezypackage

Примечания

  • https://github.com/spring-projects/spring-framework/issues/16414

  • https://github.com/spring-projects/spring-framework/commit/f6fddeb6eb7da625fd711ab371ff16512f431e8d

Связанные уязвимости

ubuntu
почти 11 лет назад

Directory traversal vulnerability in Pivotal Spring Framework 3.x before 3.2.9 and 4.0 before 4.0.5 allows remote attackers to read arbitrary files via a crafted URL.

redhat
больше 11 лет назад

Directory traversal vulnerability in Pivotal Spring Framework 3.x before 3.2.9 and 4.0 before 4.0.5 allows remote attackers to read arbitrary files via a crafted URL.

nvd
почти 11 лет назад

Directory traversal vulnerability in Pivotal Spring Framework 3.x before 3.2.9 and 4.0 before 4.0.5 allows remote attackers to read arbitrary files via a crafted URL.

github
больше 3 лет назад

Improper Limitation of a Pathname to a Restricted Directory in Spring Framework