CVE-2014-3625 PUBLISHED

Directory traversal vulnerability in Pivotal Spring Framework 3.0.4 through 3.2.x before 3.2.12, 4.0.x before 4.0.8, and 4.1.x before 4.1.2 allows remote attackers to read arbitrary files via unspecified vectors, related to static resource handling.

EPSS 16.99% · 94.9th percentile

Risk Scores

EPSS Score
16.99%
94.9th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:14.04:LTSlibspring-java0, 3.0.6.RELEASE-7, 3.0.6.RELEASE-8

Timeline

References

Open in Interactive Console →