Логотип exploitDog
bind:CVE-2018-1260
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-1260

Количество 3

Количество 3

redhat логотип

CVE-2018-1260

почти 8 лет назад

Spring Security OAuth, versions 2.3 prior to 2.3.3, 2.2 prior to 2.2.2, 2.1 prior to 2.1.2, 2.0 prior to 2.0.15 and older unsupported versions contains a remote code execution vulnerability. A malicious user or attacker can craft an authorization request to the authorization endpoint that can lead to remote code execution when the resource owner is forwarded to the approval endpoint.

CVSS3: 6.3
EPSS: Средний
nvd логотип

CVE-2018-1260

больше 7 лет назад

Spring Security OAuth, versions 2.3 prior to 2.3.3, 2.2 prior to 2.2.2, 2.1 prior to 2.1.2, 2.0 prior to 2.0.15 and older unsupported versions contains a remote code execution vulnerability. A malicious user or attacker can craft an authorization request to the authorization endpoint that can lead to remote code execution when the resource owner is forwarded to the approval endpoint.

CVSS3: 9.8
EPSS: Средний
github логотип

GHSA-rrpm-pj7p-7j9q

больше 7 лет назад

Spring Security OAuth vulnerable to remote code execution (RCE)

CVSS3: 9.8
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
redhat логотип
CVE-2018-1260

Spring Security OAuth, versions 2.3 prior to 2.3.3, 2.2 prior to 2.2.2, 2.1 prior to 2.1.2, 2.0 prior to 2.0.15 and older unsupported versions contains a remote code execution vulnerability. A malicious user or attacker can craft an authorization request to the authorization endpoint that can lead to remote code execution when the resource owner is forwarded to the approval endpoint.

CVSS3: 6.3
62%
Средний
почти 8 лет назад
nvd логотип
CVE-2018-1260

Spring Security OAuth, versions 2.3 prior to 2.3.3, 2.2 prior to 2.2.2, 2.1 prior to 2.1.2, 2.0 prior to 2.0.15 and older unsupported versions contains a remote code execution vulnerability. A malicious user or attacker can craft an authorization request to the authorization endpoint that can lead to remote code execution when the resource owner is forwarded to the approval endpoint.

CVSS3: 9.8
62%
Средний
больше 7 лет назад
github логотип
GHSA-rrpm-pj7p-7j9q

Spring Security OAuth vulnerable to remote code execution (RCE)

CVSS3: 9.8
62%
Средний
больше 7 лет назад

Уязвимостей на страницу