CVE-2014-3625
EUVD-2022-415820.11.2014, 17:50
Directory traversal vulnerability in Pivotal Spring Framework 3.0.4 through 3.2.x before 3.2.12, 4.0.x before 4.0.8, and 4.1.x before 4.1.2 allows remote attackers to read arbitrary files via unspecified vectors, related to static resource handling.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| pivotal_software | spring_framework | 3.1.0 ≤ 𝑥 ≤ 3.1.4 |
| pivotal_software | spring_framework | 3.2.0 ≤ 𝑥 < 3.2.12 |
| pivotal_software | spring_framework | 4.0.0 ≤ 𝑥 < 4.0.8 |
| pivotal_software | spring_framework | 4.1.0 ≤ 𝑥 < 4.1.2 |
| vmware | spring_framework | 3.0.4 ≤ 𝑥 ≤ 3.0.7 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| libspring-java |
|
References