7.5

CVE-2018-1272

Spring Framework, versions 5.0 prior to 5.0.5 and versions 4.3 prior to 4.3.15 and older unsupported versions, provide client-side support for multipart requests. When Spring MVC or Spring WebFlux server application (server A) receives input from a remote client, and then uses that input to make a multipart request to another server (server B), it can be exposed to an attack, where an extra multipart is inserted in the content of the request from server A, causing server B to use the wrong value for a part it expects. This could to lead privilege escalation, for example, if the part content represents a username or user roles.

Data is provided by the National Vulnerability Database (NVD)
VMwareSpring Framework Version >= 4.3.0 < 4.3.15
VMwareSpring Framework Version >= 5.0 < 5.0.5
OracleApplication Testing Suite Version12.5.0.3
OracleApplication Testing Suite Version13.1.0.1
OracleApplication Testing Suite Version13.2.0.1
OracleApplication Testing Suite Version13.3.0.1
OracleBig Data Discovery Version1.6.0
OracleGoldengate For Big Data Version12.2.0.1
OracleGoldengate For Big Data Version12.3.1.1
OracleGoldengate For Big Data Version12.3.2.1
OraclePrimavera Gateway Version15.2
OraclePrimavera Gateway Version16.2
OraclePrimavera Gateway Version17.12
OracleRetail Back Office Version14.0
OracleRetail Back Office Version14.1
OracleRetail Central Office Version14.0
OracleRetail Central Office Version14.1
OracleRetail Integration Bus Version14.0.1
OracleRetail Integration Bus Version14.0.2
OracleRetail Integration Bus Version14.0.3
OracleRetail Integration Bus Version14.0.4
OracleRetail Integration Bus Version14.1.1
OracleRetail Integration Bus Version14.1.2
OracleRetail Integration Bus Version14.1.3
OracleRetail Integration Bus Version15.0.0.1
OracleRetail Integration Bus Version15.0.1
OracleRetail Integration Bus Version15.0.2
OracleRetail Integration Bus Version16.0
OracleRetail Integration Bus Version16.0.1
OracleRetail Integration Bus Version16.0.2
OracleRetail Order Broker Version5.1
OracleRetail Order Broker Version5.2
OracleRetail Order Broker Version15.0
OracleRetail Order Broker Version16.0
OracleRetail Point-of-sale Version14.0
OracleRetail Point-of-sale Version14.1
OracleTape Library Acsls Version8.4
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 2.17% 0.836
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 1.6 5.9
CVSS:3.1/AV:N/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 6 6.8 6.4
AV:N/AC:M/Au:S/C:P/I:P/A:P