CVE-2021-22118

In Spring Framework, versions 5.2.x prior to 5.2.15 and versions 5.3.x prior to 5.3.7, a WebFlux application is vulnerable to a privilege escalation: by (re)creating the temporary storage directory, a locally authenticated malicious user can read or modify files that have been uploaded to the WebFlux application, or overwrite arbitrary files with multipart request data.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
7.8 HIGH
LOCAL
LOW
LOW
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
vmwareCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 48%
VendorProductVersion
vmwarespring_framework
5.2.0 ≤
𝑥
< 5.2.15
vmwarespring_framework
5.3.0 ≤
𝑥
< 5.3.7
oraclecommerce_guided_search
11.3.2
oraclecommunications_brm_-_elastic_charging_engine
12.0.0.3
oraclecommunications_cloud_native_core_binding_support_function
1.9.0
oraclecommunications_cloud_native_core_policy
1.14.0
oraclecommunications_cloud_native_core_security_edge_protection_proxy
1.6.0
oraclecommunications_cloud_native_core_service_communication_proxy
1.14.0
oraclecommunications_cloud_native_core_unified_data_repository
1.14.0
oraclecommunications_diameter_intelligence_hub
8.0.0 ≤
𝑥
≤ 8.1.0
oraclecommunications_diameter_intelligence_hub
8.2.0 ≤
𝑥
≤ 8.2.3
oraclecommunications_element_manager
8.2.0 ≤
𝑥
≤ 8.2.4.0
oraclecommunications_interactive_session_recorder
6.4
oraclecommunications_network_integrity
7.3.6
oraclecommunications_session_report_manager
8.0.0 ≤
𝑥
≤ 8.2.4.0
oraclecommunications_session_route_manager
8.0.0 ≤
𝑥
≤ 8.2.4.0
oraclecommunications_unified_inventory_management
7.4.1
oraclecommunications_unified_inventory_management
7.4.2
oraclecommunications_unified_inventory_management
7.5.0
oracledocumaker
12.6.0 ≤
𝑥
≤ 12.6.4
oracleenterprise_data_quality
12.2.1.3.0
oracleenterprise_data_quality
12.2.1.4.0
oraclefinancial_services_analytical_applications_infrastructure
8.0.8 ≤
𝑥
≤ 8.1.1
oraclehealthcare_data_repository
8.1.0
oracleinsurance_policy_administration
11.0 ≤
𝑥
≤ 11.3.1
oracleinsurance_rules_palette
11.0.2
oracleinsurance_rules_palette
11.1.0
oracleinsurance_rules_palette
11.2.7
oracleinsurance_rules_palette
11.3.0
oracleinsurance_rules_palette
11.3.1
oraclemysql_enterprise_monitor
𝑥
≤ 8.0.25
oracleretail_assortment_planning
16.0
oracleretail_customer_management_and_segmentation_foundation
16.0 ≤
𝑥
≤ 19.0
oracleretail_financial_integration
14.1.3.2
oracleretail_financial_integration
15.0.3.1
oracleretail_financial_integration
16.0.3
oracleretail_integration_bus
14.1.3.2
oracleretail_integration_bus
15.0.3.1
oracleretail_integration_bus
16.0.3
oracleretail_merchandising_system
19.0.1
oracleretail_order_broker
16.0
oracleretail_predictive_application_server
14.1.3
oracleretail_predictive_application_server
15.0.3
oracleretail_predictive_application_server
16.0.3
oracleutilities_testing_accelerator
6.0.0.1.1
oracleutilities_testing_accelerator
6.0.0.2.2
oracleutilities_testing_accelerator
6.0.0.3.1
netapphci
-
netappmanagement_services_for_element_software
-
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
libspring-java
bullseye
4.3.30-1
fixed
sid
4.3.30-2
fixed
trixie
4.3.30-2
fixed
bookworm
4.3.30-2
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
libspring-java
noble
not-affected
mantic
not-affected
lunar
not-affected
kinetic
not-affected
jammy
not-affected
impish
not-affected
hirsute
not-affected
groovy
not-affected
focal
not-affected
bionic
not-affected
xenial
needed
trusty
not-affected