Spring Framework and Spring Security Remote Security Bypass Vulnerability

Spring Framework and Spring Security are prone to a remote security-bypass vulnerability.

Remote attackers can exploit this issue to bypass certain security restrictions.

The following products are vulnerable:

Spring Framework versions 3.0.0 through 3.0.5
Spring Security versions 2.0.0 through 2.0.6
Spring Security versions 3.0.0 through 3.0.5


 

Privacy Statement
Copyright 2010, SecurityFocus