SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  Spring Security RegexRequestMatcher Authorization Bypass 1

Category: WEB-ATTACKS      

In Spring Security versions 5.5.6 and 5.5.7 and older unsupported versions, RegexRequestMatcher can easily be misconfigured to be bypassed on some servlet containers.

References
http://www.securityfocus.com/bid/10871


Relevant Information