CVE-2011-2894
6.8
CVSS Score
Medium
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P
Link copied!
Description
Spring Framework 3.0.0 through 3.0.5, Spring Security 3.0.0 through 3.0.5 and 2.0.0 through 2.0.6, and possibly other versions deserialize objects from untrusted sources, which allows remote attackers to bypass intended security restrictions and execute untrusted code by (1) serializing a java.lang.Proxy instance and using InvocationHandler, or (2) accessing internal AOP interfaces, as demonstrated using deserialization of a DefaultListableBeanFactory instance to execute arbitrary commands via the java.lang.Runtime class.
CVSS Vector Details
Attack Vector
Network
Attack Complexity
M
Confidentiality
P
Integrity
P
Availability
P
Affected Software Configurations
- a vmware spring_framework * * * * * * * *
- a vmware spring_security * * * * * * * *
Weaknesses (CWE)
- CWE-502
References & External Links
- http://osvdb.org/75263
- http://securityreason.com/securityalert/8405
- http://www.redhat.com/support/errata/RHSA-2011-1334.html
- http://www.securityfocus.com/archive/1/519593/100/0/threaded
- http://www.securityfocus.com/bid/49536
- http://www.springsource.com/security/cve-2011-2894
- https://exchange.xforce.ibmcloud.com/vulnerabilities/69687
- https://web.archive.org/web/20120307233721/http://www.springsource.com/security/cve-2011-2894
- http://osvdb.org/75263
- http://securityreason.com/securityalert/8405
- http://www.redhat.com/support/errata/RHSA-2011-1334.html
- http://www.securityfocus.com/archive/1/519593/100/0/threaded
- http://www.securityfocus.com/bid/49536
- http://www.springsource.com/security/cve-2011-2894
- https://exchange.xforce.ibmcloud.com/vulnerabilities/69687
- https://web.archive.org/web/20120307233721/http://www.springsource.com/security/cve-2011-2894
External Resources
CVE History Timeline
Oct 04, 2011 16:46
Initial Analysis
Aug 29, 2017 01:29
CVE Modified
Oct 09, 2018 19:33
CVE Modified
Jun 21, 2022 16:46
Modified Analysis
Jul 17, 2022 20:15
CVE Modified
May 14, 2024 02:32
CVE Modified
Nov 21, 2024 01:29
CVE Modified