NA

CVE-2023-29986

Published: 11/05/2023 Updated: 22/05/2023
CVSS v3 Base Score: 5.3 | Impact Score: 1.4 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

spring-boot-actuator-logview 0.2.13 allows Directory Traversal to sibling directories via LogViewEndpoint.view.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

spring-boot-actuator-logview project spring-boot-actuator-logview 0.2.13

Github Repositories

Check for CVE's in Spring

SpringBootChecker Check for CVE's in Spring This Python script serves as a Proof of Concept (PoC) for exploiting the CVE-2023-29986 vulnerability in spring-boot-actuator-logview version 0213 The vulnerability allows for Directory Traversal to sibling directories via the LogViewEndpointview feature Features: Target URL specification Proxy support (default to Burp Suit