AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2011-2731

MEDIUM · CVSS 5.1 EPSS 1.25%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2012-12-05 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2011-2731
Severity
MEDIUM
CVSS
5.1
EPSS
1.25%
VMware VMWare

Original NVD Description

Race condition in the RunAsManager mechanism in VMware SpringSource Spring Security before 2.0.7 and 3.0.x before 3.0.6 stores the Authentication object in the shared security context, which allows attackers to gain privileges via a crafted thread.