Lucene search

K
f5F5F5:K18193959
HistoryMay 29, 2018 - 12:00 a.m.

K18193959 : Spring Framework vulnerability CVE-2018-1258

2018-05-2900:00:00
my.f5.com
26

9.2 High

AI Score

Confidence

High

0.004 Low

EPSS

Percentile

75.2%

Security Advisory Description

Spring Security in combination with Spring Framework versions prior to 5.0.6 contains an authorization bypass when using method security. An unauthorized malicious user can gain unauthorized access to methods that should be restricted. (CVE-2018-1258)

Impact

Traffix SDC

When the vulnerability is exploited, an attacker may gain access to the restricted method.

BIG-IP, BIG-IQ, F5 iWorkflow, Enterprise Manager, ARX, and LineRate

There is no impact; these F5 products are not affected by this vulnerability.

9.2 High

AI Score

Confidence

High

0.004 Low

EPSS

Percentile

75.2%