S4E just found a high-severity finding from cve-2025-58360 scanner
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
critical·Product Based Web Vulnerabilities·Updated Oct 8, 2024

CVE-2024-0195 Scanner

CVE-2024-0195 Scanner - Remote Code Execution vulnerability in SpiderFlow

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsdomain, ipv4, subdomain
CostFree
3.2k
Times Used
continuous scan runs
3.7k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2024-0195
9.8
CVSSmedium
Exploitable remotely over the internet · low-privilege account sufficient.

A vulnerability, which was classified as critical, was found in spider-flow 0.4.3. Affected is the function FunctionService.saveFunction of the file src/main/java/org/spiderflow/controller/FunctionController.java. The manipulation leads to code injection. It is possible to launch the attack remotely. The exploit has been disclosed to the public and may be used. VDB-249510 is the identifier assigned to this vulnerability.

Attack Vector
Network
Privileges Req.
Low
User Interaction
None
Affected
spider-flowby n/a
0.4.3
Updated Aug 22, 2026View on NVD →
Detail

SpiderFlow is a powerful crawler platform used widely by developers and data analysts for web scraping and automated data extraction. The software supports various data processing and extraction techniques and is ideal for large-scale crawling tasks. Due to its flexibility, it is often employed in environments where custom web data harvesting solutions are needed. The platform’s easy integration with other tools makes it useful for organizations working extensively with web data. It is typically deployed by companies that require frequent and comprehensive data collection. The user-friendly interface also allows less technically adept users to create and manage complex crawling operations.

A Remote Code Execution (RCE) vulnerability is a critical issue that allows attackers to execute arbitrary commands on the host system where the vulnerable application resides. In the case of SpiderFlow, the vulnerability lies in the 'FunctionService.saveFunction' method, permitting malicious code injection. RCE vulnerabilities are dangerous because they can be exploited to gain full control over a vulnerable server. This can lead to unauthorized access to data, installation of malware, or disruption of services. Due to its potential impact, this type of vulnerability is often targeted by attackers looking to exploit systems with high privileges. The inclusion of this vulnerability in publicly available databases indicates an elevated risk of exploitation by threat actors.

The technical aspect of this RCE vulnerability in SpiderFlow involves manipulation of the 'FunctionService.saveFunction' within the 'FunctionController.java' file. The vulnerable endpoint can be accessed via a POST request to '/function/save', where improperly sanitized input can allow injection of malicious code. This code executes on the server side, leveraging Java methods capable of launching system commands. The specific parameter 'script' is exploited by embedded Java statements which, when executed, allow the attacker to perform arbitrary operations. The public disclosure of this vulnerability implies potential widespread knowledge and exploitation possibilities. The vulnerability's presence in the application's core functionality highlights the necessity of rigorous input validation and security measures.

When exploited, this vulnerability in SpiderFlow can have significant ramifications. The most immediate effect is unauthorized execution of commands on the server, leading to potential data breaches. An attacker could alter or exfiltrate data, leading to potential data loss or leakage of sensitive information. Additionally, the server could be commandeered to serve malicious purposes, such as launching further attacks on other systems. The exploitation might disrupt normal operations, causing service outages and affecting availability for legitimate users. These risks underline the critical need for addressing such vulnerabilities promptly to prevent security incidents.

REFERENCES

Solution Advice
  • Regularly update SpiderFlow to the latest version to incorporate security patches.
  • Implement stringent input validation and sanitization measures to prevent code injection.
  • Configure network firewalls to restrict unauthorized access to sensitive endpoints.
  • Conduct regular security audits and code reviews to identify and mitigate potential vulnerabilities.
  • Monitor server activities for unusual patterns that may indicate exploitation attempts.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.