Description

Applications serving static resources through the functional web frameworks WebMvc.fn or WebFlux.fn are vulnerable to path traversal attacks. An attacker can craft malicious HTTP requests and obtain any file on the file system that is also accessible to the process in which the Spring application is running.

INFO

Published Date :

2024-12-19T17:15:12.704Z

Last Modified :

2025-01-10T13:06:45.393Z

Source :

vmware
AFFECTED PRODUCTS

The following products are affected by CVE-2024-38819 vulnerability.

Vendors Products
Redhat
  • Apache Camel Spring Boot
REFERENCES

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality Impact
Integrity Impact
Availability Impact