CVE-2014-3625

Updated on 20 Nov 2014

Severity

Awaiting Analysis

Details

CVSS score
8.6

Overview

About vulnerability

Directory traversal vulnerability in Pivotal Spring Framework 3.0.4 through 3.2.x before 3.2.12, 4.0.x before 4.0.8, and 4.1.x before 4.1.2 allows remote attackers to read arbitrary files via unspecified vectors, related to static resource handling.

Details

Affected packages:
cxf-services-ws-discovery @ 2.7.18 (+574 more)
Directory traversal vulnerability in Pivotal Spring Framework 3.0.4 through 3.2.x before 3.2.12, 4.0.x before 4.0.8, and 4.1.x before 4.1.2 allows remote attackers to read arbitrary files via unspecified vectors, related to static resource handling.

Fixes