cbcvebase.
CVE-2020-5407
published 2020-05-13

CVE-2020-5407: Spring Security versions 5.2.x prior to 5.2.4 and 5.3.x prior to 5.3.2 contain a signature wrapping vulnerability during SAML response validation. When using…

PriorityP352high8.8CVSS 3.1
AVNACLPRLUINSUCHIHAH
EPSS
1.20%
64.7th percentile
Spring Security versions 5.2.x prior to 5.2.4 and 5.3.x prior to 5.3.2 contain a signature wrapping vulnerability during SAML response validation. When using the spring-security-saml2-service-provider component, a malicious user can carefully modify an otherwise valid SAML response and append an arbitrary assertion that Spring Security will accept as valid.

Affected

4 ranges
VendorProductVersion rangeFixed in
pivotal_softwarespring_security>= 5.2.0 < 5.2.45.2.4
pivotal_softwarespring_security>= 5.3.0 < 5.3.25.3.2
spring_by_vmwarespring_security>= 5.2 < 5.2.45.2.4
spring_by_vmwarespring_security>= 5.3 < 5.3.25.3.2

CVSS provenance

nvdv3.18.8HIGHCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
nvdv2.06.5MEDIUMAV:N/AC:L/Au:S/C:P/I:P/A:P
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.