← Back to CVE List
Vulnerability Intelligence Report

CVE-2021-22118

In Spring Framework, versions 5.2.x prior to 5.2.15 and versions 5.3.x prior to 5.3.7, a WebFlux application is vulnerable to a privilege escalation: by (re)creating the temporary storage directory, a locally authenticated malicious user can read or modify files that have been uploaded to the WebFlux application, or overwrite arbitrary files with multipart request data.

No Active Exploit Signals
CVSS Base Score
7.8
HIGH
EPSS Probability:0.40%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
Authentication
Weaponization
SSVC Action

Weaknesses (CWE)

CWE-269 ↗CWE-269: Improper Privilege Management

Affected Products & Versions

Vendor Product Affected Versions
vmware spring_framework all
oracle commerce_guided_search 11.3.2
oracle communications_brm_-_elastic_charging_engine 12.0.0.3
oracle communications_cloud_native_core_binding_support_function 1.9.0
oracle communications_cloud_native_core_policy 1.14.0
oracle communications_cloud_native_core_security_edge_protection_proxy 1.6.0
oracle communications_cloud_native_core_service_communication_proxy 1.14.0
oracle communications_cloud_native_core_unified_data_repository 1.14.0
oracle communications_diameter_intelligence_hub all
oracle communications_element_manager all
oracle communications_interactive_session_recorder 6.4
oracle communications_network_integrity 7.3.6
oracle communications_session_report_manager all
oracle communications_session_route_manager all
oracle communications_unified_inventory_management 7.4.1, 7.4.2, 7.5.0
oracle documaker all
oracle enterprise_data_quality 12.2.1.3.0, 12.2.1.4.0
oracle financial_services_analytical_applications_infrastructure all
oracle healthcare_data_repository 8.1.0
oracle insurance_policy_administration all
oracle insurance_rules_palette 11.0.2, 11.1.0, 11.2.7, 11.3.0, 11.3.1
oracle mysql_enterprise_monitor all
oracle retail_assortment_planning 16.0
oracle retail_customer_management_and_segmentation_foundation all
oracle retail_financial_integration 14.1.3.2, 15.0.3.1, 16.0.3
oracle retail_integration_bus 14.1.3.2, 15.0.3.1, 16.0.3
oracle retail_merchandising_system 19.0.1
oracle retail_order_broker 16.0
oracle retail_predictive_application_server 14.1.3, 15.0.3, 16.0.3
oracle utilities_testing_accelerator 6.0.0.1.1, 6.0.0.2.2, 6.0.0.3.1
netapp hci all
netapp management_services_for_element_software all

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
0.396%

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityVMware by Broadcom · Vendor · USA
Reserved2021-01-04T00:00:00
Published2021-05-27T14:48:16
Last Updated2024-08-03T18:30:23

LINK COPIED TO CLIPBOARD