CVE-2019-3799
Directory Traversal with spring-cloud-config-server
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
5Exploited in Wild
-Decision
Descriptions
Spring Cloud Config, versions 2.1.x prior to 2.1.2, versions 2.0.x prior to 2.0.4, and versions 1.4.x prior to 1.4.6, and older unsupported versions allow applications to serve arbitrary configuration files through the spring-cloud-config-server module. A malicious user, or attacker, can send a request using a specially crafted URL that can lead a directory traversal attack.
Spring Cloud Config, versiones 2.1.x anteriores a 2.1.2, versiones 2.0.x anteriores a 2.0.4, versiones 1.4.x anteriores a 1.4.6, y versiones anteriores no compatibles, permiten que aplicaciones entreguen archivos de configuración arbitrarios por medio del Módulo spring-cloud-config-server. Un usuario malicioso, o un atacante, puede enviar una petición usando una URL especialmente creada que puede provocar un ataque transversal a un directorio.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2019-01-03 CVE Reserved
- 2019-04-18 First Exploit
- 2019-04-30 CVE Published
- 2024-09-17 CVE Updated
- 2024-12-17 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-22: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CAPEC
References (7)
URL | Tag | Source |
---|
URL | Date | SRC |
---|---|---|
https://packetstorm.news/files/id/181104 | 2024-09-01 | |
https://packetstorm.news/files/id/152685 | 2019-04-30 | |
https://www.exploit-db.com/exploits/46772 | 2019-04-30 | |
https://github.com/mpgn/CVE-2019-3799 | 2019-04-18 | |
https://github.com/Corgizz/SpringCloud | 2022-04-07 |
URL | Date | SRC |
---|---|---|
https://www.oracle.com/security-alerts/cpuapr2022.html | 2022-06-13 |
URL | Date | SRC |
---|---|---|
https://pivotal.io/security/cve-2019-3799 | 2019-04-17 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Vmware Search vendor "Vmware" | Spring Cloud Config Search vendor "Vmware" for product "Spring Cloud Config" | >= 1.4.0 < 1.4.6 Search vendor "Vmware" for product "Spring Cloud Config" and version " >= 1.4.0 < 1.4.6" | - |
Affected
| ||||||
Vmware Search vendor "Vmware" | Spring Cloud Config Search vendor "Vmware" for product "Spring Cloud Config" | >= 2.0.0 < 2.0.4 Search vendor "Vmware" for product "Spring Cloud Config" and version " >= 2.0.0 < 2.0.4" | - |
Affected
| ||||||
Vmware Search vendor "Vmware" | Spring Cloud Config Search vendor "Vmware" for product "Spring Cloud Config" | >= 2.1.0 < 2.1.2 Search vendor "Vmware" for product "Spring Cloud Config" and version " >= 2.1.0 < 2.1.2" | - |
Affected
| ||||||
Oracle Search vendor "Oracle" | Communications Cloud Native Core Policy Search vendor "Oracle" for product "Communications Cloud Native Core Policy" | 1.15.0 Search vendor "Oracle" for product "Communications Cloud Native Core Policy" and version "1.15.0" | - |
Affected
|