peter bassill · operator
$ cve CVE-2018-1270 JSON

CVE-2018-1270

9.8
CRITICAL · CVSS 3.1 · EPSS 77.5% (pctl 100)

Patch early

EPSS 77.5% — above the 10% action threshold.

Description

Spring Framework, versions 5.0 prior to 5.0.5 and versions 4.3 prior to 4.3.15 and older unsupported versions, allow applications to expose STOMP over WebSocket endpoints with a simple, in-memory STOMP broker through the spring-messaging module. A malicious user (or attacker) can craft a message to the broker that can lead to a remote code execution attack.

Scoring

CVSS9.8 (CRITICAL, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS77.48% — more likely to be exploited than 100% of all CVEs
WeaknessCWE-94
On CISA KEVno
Public exploitnone known
Published2018-04-06
Last modified2026-06-17

Affected (28)

VendorProduct
debiandebian linux
oracleapplication testing suite
oraclebig data discovery
oraclecommunications converged application server
oraclecommunications diameter signaling router
oraclecommunications performance intelligence center
oraclecommunications services gatekeeper
oracleenterprise manager ops center
oraclegoldengate for big data
oraclehealth sciences information manager
oraclehealthcare master person index
oracleinsurance calculation engine
oracleinsurance rules palette
oracleprimavera gateway
oracleretail back office
oracleretail central office
oracleretail customer insights
oracleretail integration bus
oracleretail open commerce platform
oracleretail order broker
oracleretail point-of-sale
oracleretail predictive application server
oracleretail returns management
oracleretail xstore point of service
oracleservice architecture leveraging tuxedo
oracletape library acsls
redhatfuse
vmwarespring framework

References

→ the Explorer  ·  watch your stack  ·  NVD