« List of all CVEs

CVE-2020-5398

RFD Attack via "Content-Disposition" Header Sourced from Request Input by Spring MVC or Spring WebFlux Application

Published: 1/16/2020 Last updated: 9/16/2024 Reserved: 1/3/2020

In Spring Framework, versions 5.2.x prior to 5.2.3, versions 5.1.x prior to 5.1.13, and versions 5.0.x prior to 5.0.16, an application is vulnerable to a reflected file download (RFD) attack when it sets a "Content-Disposition" header in the response where the filename attribute is derived from user supplied input.

CNA assigner: pivotal (862b2186-222f-48b9-af87-f1fb7bb26d03) Requested by: n/a

Metrics

Version Score Severity Vector String
3.0 8 High CVSS:3.0/AV:N/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:H

Opam packages affected (1)

conf-mysql

Products affected (1)

Product Vendor Version
Spring Framework Spring 23.0 ap376220

References (88)