SpringSource Grails CVE-2012-1833 Security Bypass Vulnerability
BID:55763
Info
SpringSource Grails CVE-2012-1833 Security Bypass Vulnerability
| Bugtraq ID: | 55763 |
| Class: | Design Error |
| CVE: |
CVE-2012-1833 |
| Remote: | Yes |
| Local: | Yes |
| Published: | Oct 03 2012 12:00AM |
| Updated: | Apr 17 2014 01:10AM |
| Credit: | Reported by vendor. |
| Vulnerable: | |
| Not Vulnerable: | |
Discussion
SpringSource Grails CVE-2012-1833 Security Bypass Vulnerability
SpringSource Grails is prone to a security-bypass vulnerability.
An attacker can exploit this issue to bypass certain security restrictions and gain unauthorized access to the application, which may lead to further attacks.
Grails versions 1.3.7, 2.0 and 2.0.1 are vulnerable.
SpringSource Grails is prone to a security-bypass vulnerability.
An attacker can exploit this issue to bypass certain security restrictions and gain unauthorized access to the application, which may lead to further attacks.
Grails versions 1.3.7, 2.0 and 2.0.1 are vulnerable.
Exploit / POC
SpringSource Grails CVE-2012-1833 Security Bypass Vulnerability
An attacker can use readily available tools to exploit this issue.
An attacker can use readily available tools to exploit this issue.
Solution / Fix
SpringSource Grails CVE-2012-1833 Security Bypass Vulnerability
Solution:
Updates are available. Please see the references for details.
Solution:
Updates are available. Please see the references for details.
References
SpringSource Grails CVE-2012-1833 Security Bypass Vulnerability
References:
References:
- SpringSource Homepage (SpringSource)