← voltar
CVE-2019-0232exploração observada

CVE-2019-0232

87Vexday Risk Score

Corrija agora. Ela exploração observada pelo VulnCheck e tem exploit funcional público.

ssvc Actepss 100%
da publicação à arma0 dias
Publicada no NVD15 de abr.
1ª PoC15 de abr.
metasploit10 de abr.
VulnCheck+728d
probabilidade de exploração
100%top 1% das CVEs
exploração observada
simVulnCheck
28 exploit(s) público(s)
O que os fabricantes declaram (VEX)

Declarações oficiais dos fabricantes em formato CSAF/VEX: se o produto deles está afetado, já corrigido ou descartado — e por quê. É afirmação do fabricante, não juízo do Vexday.

Afetado
1 produto (14 componentes)
Red Hat JBoss Enterprise Web Server 2
no_fix_planned: Will not fix
Corrigido
4 produtos (84 componentes)
Red Hat JBoss Web Server 5.2 for RHEL 6 Server · Red Hat JBoss Web Server 5.2 for RHEL 7 Server · Red Hat JBoss Web Server 5.2 for RHEL 8 · Red Hat JBoss Web Server 3.1
Não afetado
18 produtos (42 componentes)porque o código vulnerável não está presente no produto
Red Hat Enterprise Linux 6 · Red Hat Enterprise Linux 7 · Red Hat Software Collections · Red Hat BPM Suite 6 · Red Hat Enterprise Linux 8 · e outros 13
When running on Windows with enableCmdLineArguments enabled, the CGI Servlet in Apache Tomcat 9.0.0.M1 to 9.0.17, 8.5.0 to 8.5.39 and 7.0.0 to 7.0.93 is vulnerable to Remote Code Execution due to a bug in the way the JRE passes command line arguments to Windows. The CGI Servlet is disabled by default. The CGI option enableCmdLineArguments is disable by default in Tomcat 9.0.x (and will be disabled by default in all versions in response to this vulnerability). For a detailed explanation of the JRE behaviour, see Markus Wulftange's blog (https://codewhitesec.blogspot.com/2016/02/java-and-command-line-injections-in-windows.html) and this archived MSDN blog (https://web.archive.org/web/20161228144344/https://blogs.msdn.microsoft.com/twistylittlepassagesallalike/2011/04/23/everyone-quotes-command-line-arguments-the-wrong-way/).
Produtos afetados
Apache · Tomcat
PoCs públicas encontradas28 VexDay Proof
exploitdbVexDay Proofwww.exploit-db.com/exploits/47073githubgithub.com/pyn3rd/CVE-2019-0232190githubgithub.com/jas502n/CVE-2019-023282githubgithub.com/jaiguptanick/CVE-2019-023233githubgithub.com/setrus/CVE-2019-023220githubgithub.com/cyy95/CVE-2019-0232-EXP3githubgithub.com/Dharan10/CVE-2019-02322githubgithub.com/Nicoslo/Windows-exploitation-Apache-Tomcat-8.5.19-CVE-2019-0232-1githubgithub.com/yuzuki-ayanami/CVE-2019-02321githubgithub.com/Nicoslo/Windows-Exploitation-Web-Server-Tomcat-8.5.39-CVE-2019-02321githubgithub.com/Jorge2Rubio/CVE-2019-02321githubgithub.com/xsxtw/CVE-2019-02320githubgithub.com/x3m1Sec/CVE-2019-0232_tomcat_cgi_exploit0githubgithub.com/r4vl1t0/CVE-2019-02320githubgithub.com/blackjuker2/CVE-2019-02320githubgithub.com/luongchivi/Preproduce-CVE-2019-02320vulncheckvulncheck.com/xdb/8e3423645344não verificadovulncheckvulncheck.com/xdb/775149bbfff6não verificadovulncheckvulncheck.com/xdb/67571ae1c53cnão verificadovulncheckvulncheck.com/xdb/783921b65e93não verificadovulncheckvulncheck.com/xdb/02fb524c7dabnão verificadovulncheckvulncheck.com/xdb/76c88b02d504não verificadovulncheckvulncheck.com/xdb/8f307d19fb1fnão verificadovulncheckvulncheck.com/xdb/ba258a523b54não verificadovulncheckvulncheck.com/xdb/8c80fe963342não verificadovulncheckvulncheck.com/xdb/510633c31536não verificadovulncheckvulncheck.com/xdb/c78c5341fccfnão verificadocve_referencepacketstormsecurity.com/files/153506/Apache-Tomcat-CGIServlet-enableCmdLineArguments-Remote-Code-Execution.htmlnão verificado
⚠ Recursos públicos, para você avaliar a exposição de sistemas que controla ou está autorizado a testar. Teste apenas com autorização.