CVE-2018-1335
82Vexday Risk Score
Patch now. It exploitation observed by VulnCheck and has a working public exploit.
ssvc Actepss 94%
from disclosure to weapon322 days
Published on NVDApr 25
1st PoC+322d
metasploitApr 25
VulnCheck+2050d
exploitation probability
94%top 1% of all CVEs
observed exploitation
yesVulnCheck
14 public exploit(s)
From Apache Tika versions 1.7 to 1.17, clients could send carefully crafted headers to tika-server that could be used to inject commands into the command line of the server running tika-server. This vulnerability only affects those running tika-server on a server that is open to untrusted clients. The mitigation is to upgrade to Tika 1.18.
Affected products
Apache Software Foundation · Apache Tikapublic PoCs found — 14✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/46540exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/47208githubgithub.com/SkyBlueEternal/CVE-2018-1335-EXP-GUI★ 14githubgithub.com/canumay/cve-2018-1335★ 1githubgithub.com/siramk/CVE-2018-1335★ 0githubgithub.com/DigitalNinja00/CVE-2018-1335★ 0githubgithub.com/N0b1e6/CVE-2018-1335-Python3★ 0vulncheckvulncheck.com/xdb/509c75796be5unverifiedvulncheckvulncheck.com/xdb/c9ddc2b4526eunverifiedcve_referencewww.exploit-db.com/exploits/46540/unverifiedcve_referencepacketstormsecurity.com/files/153864/Apache-Tika-1.17-Header-Command-Injection.htmlunverifiedvulncheckvulncheck.com/xdb/03afb5c3d4bdunverifiedvulncheckvulncheck.com/xdb/147026ce3d31unverifiedvulncheckvulncheck.com/xdb/8c09b09421aeunverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
References
http://packetstormsecurity.com/files/153864/Apache-Tika-1.17-Header-Command-Injection.htmlhttps://access.redhat.com/errata/RHSA-2019:3140https://lists.apache.org/thread.html/b3ed4432380af767effd4c6f27665cc7b2686acccbefeb9f55851dca%40%3Cdev.tika.apache.org%3Ehttps://www.exploit-db.com/exploits/46540/http://www.securityfocus.com/bid/104001