Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2021-22118

Опубликовано: 25 мая 2021
Источник: redhat
CVSS3: 7.1

Описание

In Spring Framework, versions 5.2.x prior to 5.2.15 and versions 5.3.x prior to 5.3.7, a WebFlux application is vulnerable to a privilege escalation: by (re)creating the temporary storage directory, a locally authenticated malicious user can read or modify files that have been uploaded to the WebFlux application, or overwrite arbitrary files with multipart request data.

Отчет

In OpenShift Container Platform (OCP) the jenkins package bundles the vulnerable version of spring-framework, but as Jenkins is not a type of WebFlux application is not impacted by this vulnerability. Therefore the OCP components have been marked as affected/wontfix. This may be fixed in a future release.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat AMQ Broker 7spring-webNot affected
Red Hat CodeReady Studio 12spring-webWill not fix
Red Hat Decision Manager 7spring-webNot affected
Red Hat Decision Manager 7spring-webmvcNot affected
Red Hat Fuse 7spring-webmvcNot affected
Red Hat JBoss A-MQ 6spring-webNot affected
Red Hat JBoss Fuse 6spring-webNot affected
Red Hat JBoss Fuse 6spring-webmvcNot affected
Red Hat OpenShift Container Platform 3.11jenkinsWill not fix
Red Hat OpenShift Container Platform 4jenkinsWill not fix

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-281
https://bugzilla.redhat.com/show_bug.cgi?id=1974854spring-web: (re)creating the temporary storage directory could result in a privilege escalation within WebFlux application

7.1 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
ubuntu
около 4 лет назад

In Spring Framework, versions 5.2.x prior to 5.2.15 and versions 5.3.x prior to 5.3.7, a WebFlux application is vulnerable to a privilege escalation: by (re)creating the temporary storage directory, a locally authenticated malicious user can read or modify files that have been uploaded to the WebFlux application, or overwrite arbitrary files with multipart request data.

CVSS3: 7.8
nvd
около 4 лет назад

In Spring Framework, versions 5.2.x prior to 5.2.15 and versions 5.3.x prior to 5.3.7, a WebFlux application is vulnerable to a privilege escalation: by (re)creating the temporary storage directory, a locally authenticated malicious user can read or modify files that have been uploaded to the WebFlux application, or overwrite arbitrary files with multipart request data.

CVSS3: 7.8
debian
около 4 лет назад

In Spring Framework, versions 5.2.x prior to 5.2.15 and versions 5.3.x ...

CVSS3: 7.8
github
около 3 лет назад

Improper Privilege Management in Spring Framework

CVSS3: 7.8
fstec
около 4 лет назад

Уязвимость программной платформы Spring Framework, вызваная ошибками управления привилегиями, позволяющая нарушителю читать и перезаписывать произвольные файлы

7.1 High

CVSS3