CVE-2018-11039
25.06.2018, 15:29
Spring Framework (versions 5.0.x prior to 5.0.7, versions 4.3.x prior to 4.3.18, and older unsupported versions) allow web applications to change the HTTP request method to any HTTP method (including TRACE) using the HiddenHttpMethodFilter in Spring MVC. If an application has a pre-existing XSS vulnerability, a malicious user (or attacker) can use this filter to escalate to an XST (Cross Site Tracing) attack.Enginsight
| Vendor | Product | Version |
|---|---|---|
| vmware | spring_framework | 𝑥 < 4.3.18 |
| vmware | spring_framework | 5.0.0 ≤ 𝑥 < 5.0.7 |
| oracle | agile_plm | 9.3.3 |
| oracle | agile_plm | 9.3.4 |
| oracle | agile_plm | 9.3.5 |
| oracle | agile_plm | 9.3.6 |
| oracle | application_testing_suite | 12.5.0.3 |
| oracle | application_testing_suite | 13.1.0.1 |
| oracle | application_testing_suite | 13.2.0.1 |
| oracle | application_testing_suite | 13.3.0.1 |
| oracle | communications_diameter_signaling_router | 𝑥 < 8.3 |
| oracle | communications_network_integrity | 7.3.2 ≤ 𝑥 ≤ 7.3.6 |
| oracle | communications_online_mediation_controller | 6.1 |
| oracle | communications_performance_intelligence_center | 𝑥 < 10.2.1 |
| oracle | communications_services_gatekeeper | 𝑥 < 6.1.0.4.0 |
| oracle | communications_unified_inventory_management | 7.3.2 |
| oracle | communications_unified_inventory_management | 7.3.4 |
| oracle | communications_unified_inventory_management | 7.3.5 |
| oracle | communications_unified_inventory_management | 7.4.0 |
| oracle | endeca_information_discovery_integrator | 3.1.0 |
| oracle | endeca_information_discovery_integrator | 3.2.0 |
| oracle | enterprise_manager_base_platform | 12.1.0.5.0 |
| oracle | enterprise_manager_base_platform | 13.2.0.0.0 |
| oracle | enterprise_manager_base_platform | 13.3.0.0.0 |
| oracle | enterprise_manager_for_mysql_database | 13.2 |
| oracle | enterprise_manager_ops_center | 12.3.3 |
| oracle | health_sciences_information_manager | 3.0 |
| oracle | healthcare_master_person_index | 3.0 |
| oracle | healthcare_master_person_index | 4.0 |
| oracle | hospitality_guest_access | 4.2.0 |
| oracle | hospitality_guest_access | 4.2.1 |
| oracle | insurance_calculation_engine | 11.0.0 ≤ 𝑥 ≤ 11.3.1 |
| oracle | insurance_calculation_engine | 10.2 |
| oracle | insurance_rules_palette | 10.0 |
| oracle | insurance_rules_palette | 10.2 |
| oracle | micros_lucas | 2.9.5 |
| oracle | mysql_enterprise_monitor | 𝑥 ≤ 3.4.9.4237 |
| oracle | mysql_enterprise_monitor | 4.0.0 ≤ 𝑥 ≤ 4.0.6.5281 |
| oracle | mysql_enterprise_monitor | 8.0.0 ≤ 𝑥 ≤ 8.0.2.8191 |
| oracle | primavera_p6_enterprise_project_portfolio_management | 18.8 |
| oracle | retail_advanced_inventory_planning | 15.0 |
| oracle | retail_assortment_planning | 14.1 |
| oracle | retail_assortment_planning | 15.0 |
| oracle | retail_assortment_planning | 16.0 |
| oracle | retail_clearance_optimization_engine | 14.0.5 |
| oracle | retail_customer_insights | 15.0 |
| oracle | retail_customer_insights | 16.0 |
| oracle | retail_financial_integration | 13.2 |
| oracle | retail_financial_integration | 14.0 |
| oracle | retail_financial_integration | 14.1 |
| oracle | retail_financial_integration | 15.0 |
| oracle | retail_financial_integration | 16.0 |
| oracle | retail_integration_bus | 14.1.2 |
| oracle | retail_markdown_optimization | 13.4.4 |
| oracle | retail_predictive_application_server | 14.0.3.26 |
| oracle | retail_predictive_application_server | 14.1.3.37 |
| oracle | retail_predictive_application_server | 15.0.3..100 |
| oracle | retail_predictive_application_server | 16.0 |
| oracle | retail_xstore_point_of_service | 7.1 |
| oracle | utilities_network_management_system | 1.12.0.3 |
| oracle | weblogic_server | 10.3.6.0.0 |
| oracle | weblogic_server | 12.1.3.0.0 |
| oracle | weblogic_server | 12.2.1.3.0 |
| debian | debian_linux | 9.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| libspring-java |
|
References