CVE-2019-11272 | Spring Security up to 4.2.12 Password credentials management (DLA 1848-1 / WID-SEC-2026-1955)
A vulnerability, which was classified as critical, was found in Spring Security up to 4.2.12. Affected is an unknown function. Executing a manipulation of the argument Password as part of Null Value can lead to credentials management.
The identification of this vulnerability is CVE-2019-11272. The attack may be launched remotely. There is no exploit available.