Spring.Boot.Actuator.Unauthorized.Access
Description
This indicates an attack attempt to exploit an Unauthorized Access Vulnerability in Spring Boot Actuator.
The vulnerability is due to an default configuration error. An unauthenticated attacker can exploit this via a crafted request, leading to arbitrary code execution within the context of the application.
Affected Products
Spring Boot with Actuator service enabled by default
Impact
System Compromise: Remote attackers can gain control of vulnerable systems.
Recommended Actions
Currently we are unaware of any vendor supplied patch or updates available for this issue.
Coverage
| IPS (Regular DB) | |
| IPS (Extended DB) |