NFA: CVE-2024-38819: Vulnerability "Spring Framework Path Traversal Vulnerability"
search cancel

NFA: CVE-2024-38819: Vulnerability "Spring Framework Path Traversal Vulnerability"

book

Article ID: 385641

calendar_today

Updated On:

Products

Network Flow Analysis

Issue/Introduction

DX NetOps Network Flow Analysis' SSO/RIB Module utilizes Spring Framework 6.1.13. This version of Spring Framework could be vulnerable of:

https://spring.io/security/cve-2024-38819

However, we do not use the classes which could be exploited with this vulnerability. 

Environment

DX NetOps Network Flow Analysis

Resolution

Even though we are not vulnerable, we will be upgrading our NFA SSO/RIB modules to utilize Spring Framework 6.1.14 for the DX NetOps 24.3.7 release.