S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
high·Product Based Web Vulnerabilities·Updated Jan 3, 2024

CVE-2016-4977 Scanner

CVE-2016-4977 scanner - Remote Code Execution (RCE) vulnerability in Spring Security OAuth

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsurl
CostFree
2.7k
Times Used
continuous scan runs
4.1k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2016-4977
8.8
CVSS

When processing authorization requests using the whitelabel views in Spring Security OAuth 2.0.0 to 2.0.9 and 1.0.0 to 1.0.5, the response_type parameter value was executed as Spring SpEL which enabled a malicious user to trigger remote code execution via the crafting of the value for response_type.

Attack Vector
-
Privileges Req.
-
User Interaction
-
Affected
Spring Security OAuthby Pivotal
2.0.0 to 2.0.9
Updated Aug 22, 2026View on NVD →
Detail

Spring Security OAuth is a powerful security framework that enhances the authorization flow of web applications by supporting OAuth2. This enables web application users to authenticate themselves using a third-party OAuth provider, such as Facebook, Google, or Twitter. Spring Security OAuth provides developers with a hassle-free way to implement OAuth functionality in their apps, freeing them up to concentrate on building more features and functionality.

A vulnerability known as CVE-2016-4977 was detected in Spring Security OAuth versions 2.0.0 to 2.0.9, and 1.0.0 to 1.0.5, which could enable a malicious attacker to carry out remote code execution. The vulnerability was caused by the user’s response_type parameter value allowing for Spring SpEL execution. This left the door open for malicious actors to easily exploit and cause havoc.

Exploiting this vulnerability could result in potentially disastrous consequences for web applications. It could allow the attacker to bypass security measures, take control of the application, and even steal sensitive data like user credentials, passwords, or personal identifiable information (PII). Malicious actors could also cause damage by adding unwanted web content, tampering with or deleting data, or even defacing the entire website.

Thanks to the pro features of the s4e.io platform, detecting and addressing vulnerabilities in your digital assets is easier and quicker than ever before. With just a few clicks, the platform will analyze your systems, highlighting any potential vulnerabilities, and providing useful tips on how to remediate them. Don't wait until a breach occurs; sign up today to secure your digital assets and stay ahead of the curve.

 

REFERENCES

Solution Advice

To protect against this vulnerability, and others like it, IT security teams should prioritize the following steps:

  • Upgrade to the latest version of Spring Security OAuth supported by the application.
  • Avoid implementing Spring EL expressions when processing user inputs.
  • Implement input validation with regular expressions as part of your application’s security policy.
  • Regularly carry out code reviews, penetration testing, and other security tests.
  • Always adhere to secure coding practices and security best practices when developing web applications.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.

CVE-2016-4977 scanner - Remote Code Execution (RCE) vulnerability in Spring Security OAuth | S4E