cvedb.io
CVE-2018-1229
MEDIUM · CVSS 6.1
EPSS exploitation probability: 0%
Published 2018-03-21T20:29:00.917 · Last modified 2026-06-17T01:50:46.417

Summary

Pivotal Spring Batch Admin, all versions, contains a stored XSS vulnerability in the file upload feature. An unauthenticated malicious user with network access to Spring Batch Admin could store an arbitrary web script that would be executed by other users. This issue has not been patched because Spring Batch Admin has reached end of life.

Affected products

pivotal_software — spring_batch_admin

Does this affect you?

Add your gear to cvedb and we'll alert you only when pivotal_software ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.