CVE-2020-5398

Description

In Spring Framework, versions 5.2.x prior to 5.2.3, versions 5.1.x prior to 5.1.13, and versions 5.0.x prior to 5.0.16, an application is vulnerable to a reflected file download (RFD) attack when it sets a Content-Disposition header in the response where the filename attribute is derived from user supplied input.

Risk Information

Base Score
7.5
MODERATE
Vector
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
EPSS Score
Exploitation Probability
90.205

Associated Vulnerability

VulnerabilityOS Platform
Multiple Vulnerabilities are affected in Mysql 8.0.20Windows
Multiple Vulnerabilities are affected in Mysql 8.0.5Windows
Multiple vulnerabilities are affected in Oracle WebLogic Server 12.2.1.3.0Windows
Multiple vulnerabilities are affected in Oracle WebLogic Server 12.2.1.4.0Windows
Vulnerabilities CVE-2020-5398 are fixed in Spring-webmvc 5.2.3Windows
Vulnerabilities CVE-2020-5398 are fixed in Spring-webmvc 5.1.13Windows
Vulnerabilities CVE-2020-5398 are fixed in Spring-webmvc 5.0.16Windows
Vulnerabilities CVE-2020-5398 are fixed in Spring-webflux 5.2.3Windows
Vulnerabilities CVE-2020-5398 are fixed in Spring-webflux 5.1.13Windows
Vulnerabilities CVE-2020-5398 are fixed in Spring-webflux 5.0.16Windows
Multiple Vulnerabilities are affected in Netapp Snapcenter 2.3Windows
Multiple Vulnerabilities are affected in Mysql 8.0.20 (For Linux)Linux
Multiple Vulnerabilities are affected in Mysql 8.0.5 (For Linux)Linux
Vulnerabilities CVE-2020-5398 are fixed in Spring-webmvc for Linux 5.2.3Linux
Vulnerabilities CVE-2020-5398 are fixed in Spring-webmvc for Linux 5.1.13Linux
Vulnerabilities CVE-2020-5398 are fixed in Spring-webmvc for Linux 5.0.16Linux
Vulnerabilities CVE-2020-5398 are fixed in Spring-webflux for Linux 5.2.3Linux
Vulnerabilities CVE-2020-5398 are fixed in Spring-webflux for Linux 5.1.13Linux
Vulnerabilities CVE-2020-5398 are fixed in Spring-webflux for Linux 5.0.16Linux

Patch Details

No records found

References

https://nvd.nist.gov/vuln/detail/CVE-2023-1234
https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2023-1234