CVE-2014-3625
MEDIUM 5.0EPSS 10.1%
Directory traversal vulnerability in Pivotal Spring Framework 3.0.4 through 3.2.x before 3.2.12, 4.0.x before 4.0.8, and 4.1.x before 4.1.2 allows remote attackers to read arbitrary files via unspecified vectors, related to static resource handling.
- CVSS v2.0
- 5.0 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N - EPSS
- 10.05% chance of exploitation in the next 30 days, 95th percentile
- Published
- 2014-11-20
- Updated
- 2024-08-06
Proof-of-concept exploits (1)
- ilmila/springcss-cve-2014-362532★ · 2016-03-11