CVE-2020-5398
HIGHSpring Framework 5.0.0-5.0.15, 5.1.0-5.1.12, 5.2.0-5.2.2 - Reflected File Download via Content-Disposition Header
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2020-5398. PoCs published by motikan2010.
AI-analyzed exploit summary This repository contains a functional proof-of-concept for CVE-2020-5398, demonstrating a Reflected File Download (RFD) attack in Spring MVC. The PoC includes a Spring Boot application that allows user-controlled input to be reflected in the 'Content-Disposition' header, enabling malicious file downloads.
Description
In Spring Framework, versions 5.2.x prior to 5.2.3, versions 5.1.x prior to 5.1.13, and versions 5.0.x prior to 5.0.16, an application is vulnerable to a reflected file download (RFD) attack when it sets a "Content-Disposition" header in the response where the filename attribute is derived from user supplied input.
Exploits (1)
This repository contains a functional proof-of-concept for CVE-2020-5398, demonstrating a Reflected File Download (RFD) attack in Spring MVC. The PoC includes a Spring Boot application that allows user-controlled input to be reflected in the 'Content-Disposition' header, enabling malicious file downloads.
References (44)
Scores
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H