CVE-2018-1230
Published Mar 21, 2018Pivotal Spring Batch Admin, all versions, does not contain cross site request forgery protection. A remote unauthenticated user could craft a malicious site that executes requests…
Vendor/product archive
2 CVEs tagged to pivotal_software / spring_batch_admin — 0 Critical, 1 High, 1 Medium, 0 Low, 0 Unrated.
Pivotal Spring Batch Admin, all versions, does not contain cross site request forgery protection. A remote unauthenticated user could craft a malicious site that executes requests…
Pivotal Spring Batch Admin, all versions, contains a stored XSS vulnerability in the file upload feature. An unauthenticated malicious user with network access to Spring Batch Adm…