CVE-2019-11269
published 2019-06-12CVE-2019-11269: Spring Security OAuth versions 2.3 prior to 2.3.6, 2.2 prior to 2.2.5, 2.1 prior to 2.1.5, and 2.0 prior to 2.0.18, as well as older unsupported versions could…
PriorityP344medium5.4CVSS 3.1
AVNACLPRNUIRSUCLILAN
EXPLOIT
EPSS
8.91%
94.6th percentile
Spring Security OAuth versions 2.3 prior to 2.3.6, 2.2 prior to 2.2.5, 2.1 prior to 2.1.5, and 2.0 prior to 2.0.18, as well as older unsupported versions could be susceptible to an open redirector attack that can leak an authorization code. A malicious user or attacker can craft a request to the authorization endpoint using the authorization code grant type, and specify a manipulated redirection URI via the redirect_uri parameter. This can cause the authorization server to redirect the resource owner user-agent to a URI under the control of the attacker with the leaked authorization code.
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| oracle | banking_corporate_lending | — | — |
| oracle | banking_corporate_lending | — | — |
| oracle | banking_corporate_lending | — | — |
| pivotal_software | spring_security_oauth | >= 2.0.0 < 2.0.18 | 2.0.18 |
| pivotal_software | spring_security_oauth | >= 2.1.0 < 2.1.5 | 2.1.5 |
| pivotal_software | spring_security_oauth | >= 2.2.0 < 2.2.5 | 2.2.5 |
| pivotal_software | spring_security_oauth | >= 2.3.0 < 2.3.6 | 2.3.6 |
| spring | spring_security_oauth | >= 2.0 < v2.0.18.RELEASE | v2.0.18.RELEASE |
| spring | spring_security_oauth | >= 2.1 < v2.1.5.RELEASE | v2.1.5.RELEASE |
| spring | spring_security_oauth | >= 2.2 < v2.2.5.RELEASE | v2.2.5.RELEASE |
| spring | spring_security_oauth | >= 2.3 < v2.3.6.RELEASE | v2.3.6.RELEASE |
CVSS provenance
nvdv3.15.4MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:L/I:L/A:N
nvdv3.04.2MEDIUMCVSS:3.0/AV:N/AC:H/PR:H/UI:R/S:U/C:H/I:N/A:N
nvdv2.05.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:N
vendor_oracle5.4MEDIUM
vendor_redhat5.4MEDIUM
CVEs like this are exactly what “Exploited This Week” covers.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
OSV
Open Redirect in Spring Security OAuth
osv·2019-06-13
CVE-2019-11269 [MEDIUM] Open Redirect in Spring Security OAuth
Open Redirect in Spring Security OAuth
Spring Security OAuth versions 2.3 prior to 2.3.6, 2.2 prior to 2.2.5, 2.1 prior to 2.1.5, and 2.0 prior to 2.0.18, as well as older unsupported versions could be susceptible to an open redirector attack that can leak an authorization code. A malicious user or attacker can craft a request to the authorization endpoint using the authorization code grant type, and specify a manipulated redirection URI via the redirect_uri parameter. This can cause the authorization server to redirect the resource owner user-agent to a URI under the control of the attacker with the leaked authorization code.
GHSA
Open Redirect in Spring Security OAuth
ghsa·2019-06-13
CVE-2019-11269 [MEDIUM] CWE-601 Open Redirect in Spring Security OAuth
Open Redirect in Spring Security OAuth
Spring Security OAuth versions 2.3 prior to 2.3.6, 2.2 prior to 2.2.5, 2.1 prior to 2.1.5, and 2.0 prior to 2.0.18, as well as older unsupported versions could be susceptible to an open redirector attack that can leak an authorization code. A malicious user or attacker can craft a request to the authorization endpoint using the authorization code grant type, and specify a manipulated redirection URI via the redirect_uri parameter. This can cause the authorization server to redirect the resource owner user-agent to a URI under the control of the attacker with the leaked authorization code.
Oracle
Oracle Oracle Financial Services Applications Risk Matrix: Core (Spring Security Oauth) — CVE-2019-11269
vendor_oracle·2021-01-15·CVSS 5.4
CVE-2019-11269 [MEDIUM] Oracle Oracle Financial Services Applications Risk Matrix: Core (Spring Security Oauth) — CVE-2019-11269
Oracle Oracle Financial Services Applications Risk Matrix: Core (Spring Security Oauth) vulnerability
CVE: CVE-2019-11269
CVSS: 5.4
Protocol: HTTP
Remote exploit: Yes
Affected versions: Network
Advisory: cpujan2021 (JAN 2021)
Red Hat
spring-security-oauth2: susceptible to an open redirector attack that can leak an authorization code
vendor_redhat·2019-05-30·CVSS 5.4
CVE-2019-11269 [MEDIUM] CWE-601 spring-security-oauth2: susceptible to an open redirector attack that can leak an authorization code
spring-security-oauth2: susceptible to an open redirector attack that can leak an authorization code
Spring Security OAuth versions 2.3 prior to 2.3.6, 2.2 prior to 2.2.5, 2.1 prior to 2.1.5, and 2.0 prior to 2.0.18, as well as older unsupported versions could be susceptible to an open redirector attack that can leak an authorization code. A malicious user or attacker can craft a request to the authorization endpoint using the authorization code grant type, and specify a manipulated redirection URI via the redirect_uri parameter. This can cause the authorization server to redirect the resource owner user-agent to a URI under the control of the attacker with the leaked authorization code.
Package: spring-security-oauth2 (Red Hat Fuse 7) - Not affected
No detection rules found.
http://packetstormsecurity.com/files/153299/Spring-Security-OAuth-2.3-Open-Redirection.htmlhttps://pivotal.io/security/cve-2019-11269https://www.oracle.com/security-alerts/cpujan2021.htmlhttp://packetstormsecurity.com/files/153299/Spring-Security-OAuth-2.3-Open-Redirection.htmlhttps://pivotal.io/security/cve-2019-11269https://www.oracle.com/security-alerts/cpujan2021.html
2019-06-12
Published