CVE-2020-5405: Directory Traversal with spring-cloud-config-server
Spring Cloud Config, versions 2.2.x prior to 2.2.2, versions 2.1.x prior to 2.1.7, and older unsupported versions allow applications to serve arbitrary configuration files through the spring-cloud-config-server module. A malicious user, or attacker, can send a request using a specially crafted URL that can lead a directory traversal attack.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
spring-cloud-config-serverto a version that resolves this vulnerability.Fixed in 2.2.2 - Upgrade
Upgrade
spring-cloud-config-serverto a version that resolves this vulnerability.Fixed in 2.1.7
Event History
Frequently Asked Questions
What is the severity of CVE-2020-5405?
CVE-2020-5405 is classified as a High severity vulnerability due to the potential for unauthorized access to sensitive configuration files.
How do I fix CVE-2020-5405?
To fix CVE-2020-5405, upgrade to Spring Cloud Config versions 2.2.2 or 2.1.7 or later.
What systems are affected by CVE-2020-5405?
CVE-2020-5405 affects VMware Tanzu Spring Cloud Config versions prior to 2.2.2 and 2.1.7.
What kind of attacks can exploit CVE-2020-5405?
An attacker can exploit CVE-2020-5405 to serve arbitrary configuration files, potentially leading to data leaks.
Is there a patch available for CVE-2020-5405?
Yes, a patch is available in the specified versions of Spring Cloud Config, which resolves the vulnerability.