Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2024-37084

In Spring Cloud Data Flow versions prior to 2.11.4,  a malicious user who has access to the Skipper server api can use a crafted upload request to write an arbitrary file to any location on the file system which could lead to compromising the server
Exploit prediction scoring system (EPSS) score
EPSS Score 0.731
EPSS Ranking 98.7%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2024-37084


Contact Us

Shodan ® - All rights reserved