|
|
| |
|
| |
libspring-2.5-java: information disclosure
| Package(s): | libspring-2.5-java |
CVE #(s): | CVE-2011-2730
|
| Created: | June 29, 2012 |
Updated: | August 20, 2012 |
| Description: |
From the Debian advisory:
It was discovered that the Spring Framework contains an information
disclosure vulnerability in the processing of certain Expression
Language (EL) patterns, allowing attackers to access sensitive
information using HTTP requests. |
| Alerts: |
|
( Log in to post comments)
|
|
|