First published: Fri May 11 2018(Updated: )
Pivotal Spring Framework Spring Security could allow a remote attacker to bypass security restrictions. By sending a specially-crafted request, an attacker could exploit this vulnerability to gain unauthorized access to methods that should be restricted.
Credit: security_alert@emc.com security_alert@emc.com
Affected Software | Affected Version | How to fix |
---|---|---|
IBM GDE | <=3.0.0.2 | |
redhat/spring-framework | <5.0.6 | 5.0.6 |
maven/org.springframework:spring-core | =5.0.5.RELEASE | 5.0.6.RELEASE |
All of | ||
Pivotal Software Spring Security | ||
VMware Spring Framework | =5.0.5 | |
Oracle Agile PLM | =9.3.3 | |
Oracle Agile PLM | =9.3.4 | |
Oracle Agile PLM | =9.3.5 | |
Oracle Agile PLM | =9.3.6 | |
Oracle Application Testing Suite | =10.1 | |
Oracle Application Testing Suite | =12.5.0.3 | |
Oracle Application Testing Suite | =13.1.0.1 | |
Oracle Application Testing Suite | =13.2.0.1 | |
Oracle Application Testing Suite | =13.3.0.1 | |
Oracle Big Data Discovery | =1.6.0 | |
Oracle Communications Converged Application Server | <7.0.0.1 | |
Oracle Communications Diameter Signaling Router | <8.3 | |
Oracle Communications Network Integrity | >=7.3.2<=7.3.6 | |
Oracle Communications Performance Intelligence Center | <10.2.1 | |
Oracle Communications Services Gatekeeper | <6.1.0.4.0 | |
Oracle Endeca Information Discovery Integrator | =3.1.0 | |
Oracle Endeca Information Discovery Integrator | =3.2.0 | |
Oracle Enterprise Manager For Mysql Database | =13.2 | |
Oracle Enterprise Manager Ops Center | =12.2.2 | |
Oracle Enterprise Manager Ops Center | =12.3.3 | |
Oracle Enterprise Repository | =11.1.1.7.0 | |
Oracle Enterprise Repository | =12.1.3.0.0 | |
Oracle Goldengate For Big Data | =12.2.0.1 | |
Oracle Goldengate For Big Data | =12.3.1.1 | |
Oracle Goldengate For Big Data | =12.3.2.1 | |
Oracle Health Sciences Information Manager | =3.0 | |
Oracle Healthcare Master Person Index | =3.0 | |
Oracle Healthcare Master Person Index | =4.0 | |
Oracle Hospitality Guest Access | =4.2.0 | |
Oracle Hospitality Guest Access | =4.2.1 | |
Oracle Insurance Calculation Engine | =10.1.1 | |
Oracle Insurance Calculation Engine | =10.2 | |
Oracle Insurance Calculation Engine | =10.2.1 | |
Oracle Insurance Policy Administration | =10.0 | |
Oracle Insurance Policy Administration | =10.1 | |
Oracle Insurance Policy Administration | =10.2 | |
Oracle Insurance Policy Administration | =11.0 | |
Oracle Insurance Rules Palette | =10.0 | |
Oracle Insurance Rules Palette | =10.1 | |
Oracle Insurance Rules Palette | =10.2 | |
Oracle Insurance Rules Palette | =11.0 | |
Oracle Insurance Rules Palette | =11.1 | |
Oracle Micros Lucas | =2.9.5 | |
Oracle Mysql Enterprise Monitor | <=8.0.2.8191 | |
Oracle Peoplesoft Enterprise Fin Install | =9.2 | |
Oracle Retail Assortment Planning | =14.1 | |
Oracle Retail Assortment Planning | =15.0 | |
Oracle Retail Assortment Planning | =16.0 | |
Oracle Retail Back Office | =14.0 | |
Oracle Retail Back Office | =14.1 | |
Oracle Retail Central Office | =14.0 | |
Oracle Retail Central Office | =14.1 | |
Oracle Retail Customer Insights | =15.0 | |
Oracle Retail Customer Insights | =16.0 | |
Oracle Retail Financial Integration | =13.2 | |
Oracle Retail Financial Integration | =14.0 | |
Oracle Retail Financial Integration | =14.1 | |
Oracle Retail Financial Integration | =15.0 | |
Oracle Retail Financial Integration | =16.0 | |
Oracle Retail Integration Bus | =14.1.2 | |
Oracle Retail Point-of-Service | =14.0 | |
Oracle Retail Point-of-Service | =14.1 | |
Oracle Retail Returns Management | =14.0 | |
Oracle Retail Returns Management | =14.1 | |
Oracle Retail Xstore Point of Service | =17.0 | |
Oracle Service Architecture Leveraging Tuxedo | =12.1.3.0.0 | |
Oracle Service Architecture Leveraging Tuxedo | =12.2.2.0.0 | |
Oracle Tape Library Acsls | =8.4 | |
Oracle WebLogic Server | =10.3.6.0 | |
Oracle WebLogic Server | =12.1.3.0 | |
Oracle WebLogic Server | =12.2.1.2 | |
Oracle WebLogic Server | =12.2.1.3 | |
NetApp OnCommand Insight | ||
Netapp Oncommand Unified Manager Windows | >=7.3 | |
Netapp Oncommand Unified Manager Vsphere | >=9.4 | |
NetApp OnCommand Workflow Automation | ||
Netapp Snapcenter | ||
Netapp Storage Automation Store | ||
Redhat Fuse | =7.3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.