Home / exploitsPDF  

Spring Data REST PATCH Request Remote Code Execution

Posted on 20 March 2018

Spring Data REST versions prior to 2.6.9 (Ingalls SR9) and 3.0.1 (Kay SR1) suffer from a PATCH request remote code execution vulnerability.

 

TOP