peter bassill · operator
$ cve CVE-2019-3799 JSON

CVE-2019-3799 EXPLOIT

6.5
MEDIUM · CVSS 3.1 · EPSS 85.3% (pctl 100)

Patch early

A public exploit exists.

Description

Spring Cloud Config, versions 2.1.x prior to 2.1.2, versions 2.0.x prior to 2.0.4, and versions 1.4.x prior to 1.4.6, and older unsupported versions allow applications to serve arbitrary configuration files through the spring-cloud-config-server module. A malicious user, or attacker, can send a request using a specially crafted URL that can lead a directory traversal attack.

Scoring

CVSS6.5 (MEDIUM, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
EPSS85.3% — more likely to be exploited than 100% of all CVEs
WeaknessCWE-22
On CISA KEVno
Public exploityes
Published2019-05-06
Last modified2026-06-17

Affected (2)

VendorProduct
oraclecommunications cloud native core policy
vmwarespring cloud config

Public exploits

SourceTitleDate
exploit-dbSpring Cloud Config 2.1.x - Path Traversal (Metasploit)2019-04-30

References

→ the Explorer  ·  watch your stack  ·  NVD