Path traversal in Spring Framework - CVE-2018-1271

 

Path traversal in Spring Framework - CVE-2018-1271

Published: April 11, 2018 / Updated: April 11, 2018


Vulnerability identifier: #VU11752
CSH Severity: Low
CVSS v4: 9.3 [CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N]
CVE-ID: CVE-2018-1271
CWE-ID: CWE-22
Exploitation vector: Remote access
Exploit availability: No public exploit available

Vulnerability details

The vulnerability allows a remote unauthenticated attacker to obtain potentially sensitive information and write arbitrary files on the target system.

The weakness exists in the spring-webmvc module due to the improper serving of static resources from a file system on Microsoft Windows systems. A remote attacker can send a malicious request using a crafted URL, trigger directory traversal, overwrite, delete or read potentially sensitive file information.


Affected software

Spring Framework
Dell Support Assist Enterprise
IBM Engineering Requirements Management DOORS Next
Fuse
IBM Cognos Controller

How to mitigate CVE-2018-1271

Update to versions 5.0.5 or 4.3.15.

Dell Support Assist Enterprise - update to 4.00.06.00
Fuse - update to 7.1.0
IBM Engineering Requirements Management DOORS Next - update to 9.7.2.7
IBM Cognos Controller - addressed in versions 10.4.1.0.15, 10.4.2.0.2

External References

Related Security Bulletins