4.3
CVSSv2

CVE-2020-5405

Published: 05/03/2020 Updated: 07/03/2020
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.5 | Impact Score: 3.6 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Spring Cloud Config, versions 2.2.x before 2.2.2, versions 2.1.x before 2.1.7, and older unsupported versions allow applications to serve arbitrary configuration files through the spring-cloud-config-server module. A malicious user, or attacker, can send a request using a specially crafted URL that can lead a directory traversal attack.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

vmware spring cloud config

Vendor Advisories

Check Point Reference: CPAI-2020-4130 Date Published: 28 Feb 2024 Severity: Medium ...

Github Repositories

CVE-2020-5405 spring-cloud-config路径穿越导致的信息泄露 1、/etc/hosts无法读取;/etc/hostsallow可以读取;/etc/ca-certificatesconf还可通过拼接读取。 2、路径穿越可以被利用的条件是: 在配置文件applicationproperties/applicationyml中配置springprofilesactive的值为本地文件系统native(一般是git的url?); 3、