Apache Commons Text prior to 1.10.0 allows RCE when applied to untrusted input due to insecure interpolation defaults
84Vexday Risk Score
Corrija agora. Ela exploração observada pelo VulnCheck e tem exploit funcional público.
ssvc Actepss 100%
da publicação à arma4 dias
Publicada no NVD13 de out.
1ª PoC+4d
metasploit13 de out.
VulnCheck+91d
probabilidade de exploração
100%top 1% das CVEs
exploração observada
simVulnCheck
92 exploit(s) público(s)
Apache Commons Text performs variable interpolation, allowing properties to be dynamically evaluated and expanded. The standard format for interpolation is "${prefix:name}", where "prefix" is used to locate an instance of org.apache.commons.text.lookup.StringLookup that performs the interpolation. Starting with version 1.5 and continuing through 1.9, the set of default Lookup instances included interpolators that could result in arbitrary code execution or contact with remote servers. These lookups are: - "script" - execute expressions using the JVM script execution engine (javax.script) - "dns" - resolve dns records - "url" - load values from urls, including from remote servers Applications using the interpolation defaults in the affected versions may be vulnerable to remote code execution or unintentional contact with remote servers if untrusted configuration values are used. Users are recommended to upgrade to Apache Commons Text 1.10.0, which disables the problematic interpolators by default.
Produtos afetados
Apache Software Foundation · Apache Commons TextPoCs públicas encontradas — 92
exploitdbwww.exploit-db.com/exploits/52261não verificadogithubgithub.com/karthikuj/cve-2022-42889-text4shell-docker★ 76githubgithub.com/kljunowsky/CVE-2022-42889-text4shell★ 57githubgithub.com/ClickCyber/cve-2022-42889★ 39githubgithub.com/SeanWrightSec/CVE-2022-42889-PoC★ 34githubgithub.com/f0ng/text4shellburpscanner★ 20githubgithub.com/cxzero/CVE-2022-42889-text4shell★ 20githubgithub.com/cryxnet/CVE-2022-42889-RCE★ 15githubgithub.com/alealeluyah/CVE-2022-42889-Text4Shell-POC★ 13githubgithub.com/korteke/CVE-2022-42889-POC★ 11githubgithub.com/ifconfig-me/Log4Shell-Payloads★ 8githubgithub.com/securekomodo/text4shell-poc★ 8githubgithub.com/QAInsights/cve-2022-42889-jmeter★ 7githubgithub.com/akshayithape-devops/CVE-2022-42889-POC★ 5githubgithub.com/smileostrich/Text4Shell-Scanner★ 5githubgithub.com/vickyaryan7/Text4shell-exploit★ 5githubgithub.com/0xmaximus/Apache-Commons-Text-CVE-2022-42889★ 4githubgithub.com/chainguard-dev/text4shell-policy★ 4githubgithub.com/uk0/cve-2022-42889-intercept★ 3githubgithub.com/stavrosgns/Text4ShellPayloads★ 3githubgithub.com/s3l33/CVE-2022-42889★ 3githubgithub.com/sunnyvale-it/CVE-2022-42889-PoC★ 2githubgithub.com/Gotcha1G/CVE-2022-42889★ 2githubgithub.com/devenes/text4shell-cve-2022-42889★ 2githubgithub.com/Vulnmachines/text4shell-CVE-2022-42889★ 2githubgithub.com/humbss/CVE-2022-42889★ 2githubgithub.com/gokul-ramesh/text4shell-exploit★ 1githubgithub.com/rhitikwadhvana/CVE-2022-42889-Text4Shell-Exploit-POC★ 1githubgithub.com/tulhan/commons-text-goat★ 1githubgithub.com/sangrok-jeon/CVE-2022-42889-Analysis★ 0githubgithub.com/hotblac/text4shell★ 0githubgithub.com/rockmelodies/CVE-2022-42889★ 0githubgithub.com/eunomie/cve-2022-42889-check★ 0githubgithub.com/neerazz/CVE-2022-42889★ 0githubgithub.com/galoget/CVE-2022-42889-Text4Shell-Docker★ 0githubgithub.com/adarshpv9746/Text4shell--Automated-exploit---CVE-2022-42889★ 0githubgithub.com/aaronm-sysdig/text4shell-docker★ 0githubgithub.com/34006133/CVE-2022-42889★ 0githubgithub.com/DimaMend/cve-2022-42889-text4shell★ 0githubgithub.com/joshbnewton31080/cve-2022-42889-text4shell★ 0githubgithub.com/Syndicate27/text4shell-exploit★ 0githubgithub.com/shoucheng3/asf__commons-text_CVE-2022-42889_1-9★ 0githubgithub.com/Goultarde/CVE-2022-42889-text4shell★ 0githubgithub.com/engranaabubakar/CVE-2022-42889★ 0githubgithub.com/Sic4rio/CVE-2022-42889★ 0githubgithub.com/KosmicOwl045/ICT287-CVE-2022-42889★ 0githubgithub.com/kiralab/text4shell-scan★ 0githubgithub.com/necroteddy/CVE-2022-42889★ 0githubgithub.com/ReachabilityOrg/cve-2022-42889-text4shell-docker★ 0githubgithub.com/Dima2021/cve-2022-42889-text4shell★ 0githubgithub.com/Hkaeeeer/CVE-2022-42889★ 0vulncheckvulncheck.com/xdb/5c158c054bc7não verificadovulncheckvulncheck.com/xdb/7129115e6e84não verificadovulncheckvulncheck.com/xdb/2113b466a56anão verificadovulncheckvulncheck.com/xdb/ec24d9df68c5não verificadovulncheckvulncheck.com/xdb/b0bb4241ccd2não verificadovulncheckvulncheck.com/xdb/b8b25076ed7enão verificadovulncheckvulncheck.com/xdb/314dca672d04não verificadovulncheckvulncheck.com/xdb/c1827ab386c2não verificadovulncheckvulncheck.com/xdb/e10770356a6bnão verificadovulncheckvulncheck.com/xdb/47c953546f47não verificadovulncheckvulncheck.com/xdb/7e7d2cbf38dfnão verificadovulncheckvulncheck.com/xdb/3e96c4d92251não verificadovulncheckvulncheck.com/xdb/62c7fee2481dnão verificadovulncheckvulncheck.com/xdb/f48682e5693bnão verificadovulncheckvulncheck.com/xdb/cb76b2c83924não verificadovulncheckvulncheck.com/xdb/eacaa89daa19não verificadovulncheckvulncheck.com/xdb/c405fdc828c1não verificadovulncheckvulncheck.com/xdb/61b91daa4dcfnão verificadovulncheckvulncheck.com/xdb/dc8f45ac8044não verificadovulncheckvulncheck.com/xdb/5711893e4f71não verificadovulncheckvulncheck.com/xdb/a106c45cba03não verificadovulncheckvulncheck.com/xdb/2b3df872e90dnão verificadovulncheckvulncheck.com/xdb/a73e401bf0b9não verificadovulncheckvulncheck.com/xdb/fec0c3608e1enão verificadovulncheckvulncheck.com/xdb/096455128c6cnão verificadovulncheckvulncheck.com/xdb/c58be2e707denão verificadovulncheckvulncheck.com/xdb/6d22ed98f9b3não verificadocve_referencepacketstormsecurity.com/files/176650/Apache-Commons-Text-1.9-Remote-Code-Execution.htmlnão verificadovulncheckvulncheck.com/xdb/150dd9cbab37não verificadovulncheckvulncheck.com/xdb/db1b1f344e82não verificadovulncheckvulncheck.com/xdb/926c5926fe6cnão verificadovulncheckvulncheck.com/xdb/f11ebcf632b8não verificadocve_referencepacketstormsecurity.com/files/171003/OX-App-Suite-Cross-Site-Scripting-Server-Side-Request-Forgery.htmlnão verificadovulncheckvulncheck.com/xdb/9d48c2c44fe0não verificadovulncheckvulncheck.com/xdb/7d70e4329519não verificadovulncheckvulncheck.com/xdb/074f3a1904d7não verificadovulncheckvulncheck.com/xdb/b96cd6d6920enão verificadovulncheckvulncheck.com/xdb/0109e0687233não verificadovulncheckvulncheck.com/xdb/746f9b679411não verificadovulncheckvulncheck.com/xdb/94c887a105d9não verificadovulncheckvulncheck.com/xdb/be7e0fe71d54não verificado⚠ Recursos públicos, para você avaliar a exposição de sistemas que controla ou está autorizado a testar. Teste apenas com autorização.
Referências
http://packetstormsecurity.com/files/171003/OX-App-Suite-Cross-Site-Scripting-Server-Side-Request-Forgery.htmlhttp://packetstormsecurity.com/files/176650/Apache-Commons-Text-1.9-Remote-Code-Execution.htmlhttp://seclists.org/fulldisclosure/2023/Feb/3https://lists.apache.org/thread/n2bd4vdsgkqh2tm14l1wyc3jyol7s1omhttps://psirt.global.sonicwall.com/vuln-detail/SNWLID-2022-0022https://security.gentoo.org/glsa/202301-05https://security.netapp.com/advisory/ntap-20221020-0004/http://www.openwall.com/lists/oss-security/2022/10/13/4http://www.openwall.com/lists/oss-security/2022/10/18/1