My Oracle Support Banner

OATS: Vulnerabilities For Spring Framework (CVE-2020-5398) (Doc ID 2864878.1)

Last updated on FEBRUARY 27, 2023

Applies to:

Oracle Application Testing Suite - Version 13.3.1.0.0 to 13.3.1.0.0 [Release 13.1]
Information in this document applies to any platform.

Symptoms

Oracle Application Testing Suite 13.3.0.1.422 January 2022 CPU

Oracle Application Testing Suite which is installed on windows servers with respect to Spring Framework 5.0.x < 5.0.16 / 5.1.x < 5.1.13 / 5.2.x < 5.2.3 Spring Framework Reflected File Download Vulnerability - (CVE-2020-5398):

 

Cause

To view full details, sign in with your My Oracle Support account.

Don't have a My Oracle Support account? Click to get started!


In this Document
Symptoms
Cause
Solution
References


My Oracle Support provides customers with access to over a million knowledge articles and a vibrant support community of peers and Oracle experts.