9.8
CVSSv3

CVE-2018-1275

Published: 11/04/2018 Updated: 07/11/2023
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Spring Framework, versions 5.0 before 5.0.5 and versions 4.3 before 4.3.16 and older unsupported versions, allow applications to expose STOMP over WebSocket endpoints with a simple, in-memory STOMP broker through the spring-messaging module. A malicious user (or attacker) can craft a message to the broker that can lead to a remote code execution attack. This CVE addresses the partial fix for CVE-2018-1270 in the 4.3.x branch of the Spring Framework.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

vmware spring framework

oracle primavera gateway 16.2

oracle primavera gateway 15.2

oracle application testing suite 12.5.0.3

oracle retail open commerce platform 6.0.1

oracle application testing suite 13.1.0.1

oracle application testing suite 13.2.0.1

oracle application testing suite 13.3.0.1

oracle communications diameter signaling router

oracle communications performance intelligence center

oracle insurance rules palette 10.0

oracle insurance rules palette 10.2

oracle communications services gatekeeper

oracle health sciences information manager 3.0

oracle healthcare master person index 3.0

oracle healthcare master person index 4.0

oracle insurance calculation engine 10.2

oracle retail customer insights 15.0

oracle retail customer insights 16.0

oracle tape library acsls 8.4

oracle communications converged application server

oracle service architecture leveraging tuxedo 12.1.3.0.0

oracle service architecture leveraging tuxedo 12.2.2.0.0

oracle retail predictive application server 14.0

oracle retail predictive application server 14.1

oracle retail predictive application server 15.0

oracle retail predictive application server 16.0

oracle retail order broker 5.1

oracle retail order broker 5.2

oracle retail order broker 15.0

oracle retail order broker 16.0

oracle retail open commerce platform 5.3.0

oracle retail open commerce platform 6.0.0

oracle insurance calculation engine 10.2.1

oracle insurance calculation engine 10.1.1

oracle insurance rules palette 10.1

oracle insurance rules palette 11.0

oracle insurance rules palette 11.1

oracle primavera gateway 17.12

oracle big data discovery 1.6.0

oracle goldengate for big data 12.2.0.1

oracle goldengate for big data 12.3.1.1

oracle goldengate for big data 12.3.2.1

Vendor Advisories

Synopsis Critical: Red Hat FIS 20 on Fuse 630 R8 security and bug fix update Type/Severity Security Advisory: Critical Topic An update is now available for Red Hat Fuse Integration ServicesRed Hat Product Security has rated this update as having a security impact of Critical A Common Vulnerability Scor ...
Debian Bug report logs - #895114 libspring-java: CVE-2018-1270 CVE-2018-1272 Package: src:libspring-java; Maintainer for src:libspring-java is Debian Java Maintainers <pkg-java-maintainers@listsaliothdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sat, 7 Apr 2018 07:51:01 UTC Severity: gra ...
Spring Framework, versions 50 prior to 505 and versions 43 prior to 4316 and older unsupported versions, allow applications to expose STOMP over WebSocket endpoints with a simple, in-memory STOMP broker through the spring-messaging module A malicious user (or attacker) can craft a message to the broker that can lead to a remote code executio ...

Github Repositories

JavaRce complements project - use RASP to prevent vulnerabilities

PPPRASP By Whoopsunix why jvm-sandbox? 发现 jvm-sandbox 从 140 开始支持 Native 的增强,正好写一个简单的 RASP Demo 来熟悉这个 AOP 框架(其实是懒得用从头用 ASM 写)。 AOP 框架、沙箱类隔离等架构优点,很难拒绝 基层基于 ASM 实现,框架比较熟悉,后续有更复杂的需求时可以改源码方便 虽然没有

Recent Articles

Old bugs, new bugs, red bugs … yes, it's Oracle mega-update day again
The Register • Richard Chirgwin • 18 Jan 2019

Out of 284 flaws, 33 are rated critical. Big Red admins have big patches ahead Thought Patch Tuesday was a load? You gotta check out this Oracle mega-advisory, then

Oracle admins, here's your first critical patch advisory for 2019, and it's a doozy: a total of 284 vulnerabilities patched across Big Red's product range, and 33 of them are rated “critical”. We hope your support contracts are up-to-date to receive these fixes. The full list is here, and with so much to choose from, The Register will work through the top-rated bugs. Oracle Communications Applications (OCA) is home to nine of the vulnerabilities in various components: Oracle E-Business' Perf...