CVE-2018-1273: VMware Tanzu Spring Data Commons
EPSS96.9%No. 313 of 1739 in KEV
CVE year2018~4 yrs before listing
Same vendor in KEV3
Same product1
| Field | Value |
|---|---|
| Vendor | VMware Tanzu |
| Product | Spring Data Commons |
| Name | VMware Tanzu Spring Data Commons Property Binder Vulnerability |
| Added to KEV | 2022-03-25 |
| US federal due date | 2022-04-15 |
| Ransomware use | Known |
| CWE | CWE-94 |
CISA description
Spring Data Commons contains a property binder vulnerability which can allow an attacker to perform remote code execution.
Data from CISA's Known Exploited Vulnerabilities (KEV) catalog. EPSS is FIRST's estimated probability of exploitation activity in the next 30 days, refreshed weekly. Always follow the vendor's official guidance.
About this page
A VMware Tanzu Spring Data Commons vulnerability added to CISA's Known Exploited Vulnerabilities catalog on 2022-03-25.