Apache Commons Text prior to 1.10.0 allows RCE when applied to untrusted input due to insecure interpolation defaults
84Vexday Risk Score
Corrige ahora. Ella explotación observada por VulnCheck y tiene exploit funcional público.
ssvc Actepss 100%
de la publicación al arma4 días
Publicada en NVD13 oct
1ª PoC+4d
metasploit13 oct
VulnCheck+91d
probabilidad de explotación
100%top 1% de las CVE
explotación observada
síVulnCheck
92 exploit(s) público(s)
Apache Commons Text performs variable interpolation, allowing properties to be dynamically evaluated and expanded. The standard format for interpolation is "${prefix:name}", where "prefix" is used to locate an instance of org.apache.commons.text.lookup.StringLookup that performs the interpolation. Starting with version 1.5 and continuing through 1.9, the set of default Lookup instances included interpolators that could result in arbitrary code execution or contact with remote servers. These lookups are: - "script" - execute expressions using the JVM script execution engine (javax.script) - "dns" - resolve dns records - "url" - load values from urls, including from remote servers Applications using the interpolation defaults in the affected versions may be vulnerable to remote code execution or unintentional contact with remote servers if untrusted configuration values are used. Users are recommended to upgrade to Apache Commons Text 1.10.0, which disables the problematic interpolators by default.
Productos afectados
Apache Software Foundation · Apache Commons TextPoCs públicas encontradas — 92
exploitdbwww.exploit-db.com/exploits/52261no verificadogithubgithub.com/karthikuj/cve-2022-42889-text4shell-docker★ 76githubgithub.com/kljunowsky/CVE-2022-42889-text4shell★ 57githubgithub.com/ClickCyber/cve-2022-42889★ 39githubgithub.com/SeanWrightSec/CVE-2022-42889-PoC★ 34githubgithub.com/f0ng/text4shellburpscanner★ 20githubgithub.com/cxzero/CVE-2022-42889-text4shell★ 20githubgithub.com/cryxnet/CVE-2022-42889-RCE★ 15githubgithub.com/alealeluyah/CVE-2022-42889-Text4Shell-POC★ 13githubgithub.com/korteke/CVE-2022-42889-POC★ 11githubgithub.com/ifconfig-me/Log4Shell-Payloads★ 8githubgithub.com/securekomodo/text4shell-poc★ 8githubgithub.com/QAInsights/cve-2022-42889-jmeter★ 7githubgithub.com/akshayithape-devops/CVE-2022-42889-POC★ 5githubgithub.com/smileostrich/Text4Shell-Scanner★ 5githubgithub.com/vickyaryan7/Text4shell-exploit★ 5githubgithub.com/0xmaximus/Apache-Commons-Text-CVE-2022-42889★ 4githubgithub.com/chainguard-dev/text4shell-policy★ 4githubgithub.com/uk0/cve-2022-42889-intercept★ 3githubgithub.com/stavrosgns/Text4ShellPayloads★ 3githubgithub.com/s3l33/CVE-2022-42889★ 3githubgithub.com/sunnyvale-it/CVE-2022-42889-PoC★ 2githubgithub.com/Gotcha1G/CVE-2022-42889★ 2githubgithub.com/devenes/text4shell-cve-2022-42889★ 2githubgithub.com/Vulnmachines/text4shell-CVE-2022-42889★ 2githubgithub.com/humbss/CVE-2022-42889★ 2githubgithub.com/gokul-ramesh/text4shell-exploit★ 1githubgithub.com/rhitikwadhvana/CVE-2022-42889-Text4Shell-Exploit-POC★ 1githubgithub.com/tulhan/commons-text-goat★ 1githubgithub.com/sangrok-jeon/CVE-2022-42889-Analysis★ 0githubgithub.com/hotblac/text4shell★ 0githubgithub.com/rockmelodies/CVE-2022-42889★ 0githubgithub.com/eunomie/cve-2022-42889-check★ 0githubgithub.com/neerazz/CVE-2022-42889★ 0githubgithub.com/galoget/CVE-2022-42889-Text4Shell-Docker★ 0githubgithub.com/adarshpv9746/Text4shell--Automated-exploit---CVE-2022-42889★ 0githubgithub.com/aaronm-sysdig/text4shell-docker★ 0githubgithub.com/34006133/CVE-2022-42889★ 0githubgithub.com/DimaMend/cve-2022-42889-text4shell★ 0githubgithub.com/joshbnewton31080/cve-2022-42889-text4shell★ 0githubgithub.com/Syndicate27/text4shell-exploit★ 0githubgithub.com/shoucheng3/asf__commons-text_CVE-2022-42889_1-9★ 0githubgithub.com/Goultarde/CVE-2022-42889-text4shell★ 0githubgithub.com/engranaabubakar/CVE-2022-42889★ 0githubgithub.com/Sic4rio/CVE-2022-42889★ 0githubgithub.com/KosmicOwl045/ICT287-CVE-2022-42889★ 0githubgithub.com/kiralab/text4shell-scan★ 0githubgithub.com/necroteddy/CVE-2022-42889★ 0githubgithub.com/ReachabilityOrg/cve-2022-42889-text4shell-docker★ 0githubgithub.com/Dima2021/cve-2022-42889-text4shell★ 0githubgithub.com/Hkaeeeer/CVE-2022-42889★ 0vulncheckvulncheck.com/xdb/5c158c054bc7no verificadovulncheckvulncheck.com/xdb/7129115e6e84no verificadovulncheckvulncheck.com/xdb/2113b466a56ano verificadovulncheckvulncheck.com/xdb/ec24d9df68c5no verificadovulncheckvulncheck.com/xdb/b0bb4241ccd2no verificadovulncheckvulncheck.com/xdb/b8b25076ed7eno verificadovulncheckvulncheck.com/xdb/314dca672d04no verificadovulncheckvulncheck.com/xdb/c1827ab386c2no verificadovulncheckvulncheck.com/xdb/e10770356a6bno verificadovulncheckvulncheck.com/xdb/47c953546f47no verificadovulncheckvulncheck.com/xdb/7e7d2cbf38dfno verificadovulncheckvulncheck.com/xdb/3e96c4d92251no verificadovulncheckvulncheck.com/xdb/62c7fee2481dno verificadovulncheckvulncheck.com/xdb/f48682e5693bno verificadovulncheckvulncheck.com/xdb/cb76b2c83924no verificadovulncheckvulncheck.com/xdb/eacaa89daa19no verificadovulncheckvulncheck.com/xdb/c405fdc828c1no verificadovulncheckvulncheck.com/xdb/61b91daa4dcfno verificadovulncheckvulncheck.com/xdb/dc8f45ac8044no verificadovulncheckvulncheck.com/xdb/5711893e4f71no verificadovulncheckvulncheck.com/xdb/a106c45cba03no verificadovulncheckvulncheck.com/xdb/2b3df872e90dno verificadovulncheckvulncheck.com/xdb/a73e401bf0b9no verificadovulncheckvulncheck.com/xdb/fec0c3608e1eno verificadovulncheckvulncheck.com/xdb/096455128c6cno verificadovulncheckvulncheck.com/xdb/c58be2e707deno verificadovulncheckvulncheck.com/xdb/6d22ed98f9b3no verificadocve_referencepacketstormsecurity.com/files/176650/Apache-Commons-Text-1.9-Remote-Code-Execution.htmlno verificadovulncheckvulncheck.com/xdb/150dd9cbab37no verificadovulncheckvulncheck.com/xdb/db1b1f344e82no verificadovulncheckvulncheck.com/xdb/926c5926fe6cno verificadovulncheckvulncheck.com/xdb/f11ebcf632b8no verificadocve_referencepacketstormsecurity.com/files/171003/OX-App-Suite-Cross-Site-Scripting-Server-Side-Request-Forgery.htmlno verificadovulncheckvulncheck.com/xdb/9d48c2c44fe0no verificadovulncheckvulncheck.com/xdb/7d70e4329519no verificadovulncheckvulncheck.com/xdb/074f3a1904d7no verificadovulncheckvulncheck.com/xdb/b96cd6d6920eno verificadovulncheckvulncheck.com/xdb/0109e0687233no verificadovulncheckvulncheck.com/xdb/746f9b679411no verificadovulncheckvulncheck.com/xdb/94c887a105d9no verificadovulncheckvulncheck.com/xdb/be7e0fe71d54no verificado⚠ Recursos públicos, para evaluar la exposición de sistemas que controlas o estás autorizado a probar. Prueba solo con autorización.
Referencias
http://packetstormsecurity.com/files/171003/OX-App-Suite-Cross-Site-Scripting-Server-Side-Request-Forgery.htmlhttp://packetstormsecurity.com/files/176650/Apache-Commons-Text-1.9-Remote-Code-Execution.htmlhttp://seclists.org/fulldisclosure/2023/Feb/3https://lists.apache.org/thread/n2bd4vdsgkqh2tm14l1wyc3jyol7s1omhttps://psirt.global.sonicwall.com/vuln-detail/SNWLID-2022-0022https://security.gentoo.org/glsa/202301-05https://security.netapp.com/advisory/ntap-20221020-0004/http://www.openwall.com/lists/oss-security/2022/10/13/4http://www.openwall.com/lists/oss-security/2022/10/18/1