← voltar
CVE-2022-42889exploração observada

Apache Commons Text prior to 1.10.0 allows RCE when applied to untrusted input due to insecure interpolation defaults

84Vexday Risk Score

Corrija agora. Ela exploração observada pelo VulnCheck e tem exploit funcional público.

ssvc Actepss 100%
da publicação à arma4 dias
Publicada no NVD13 de out.
1ª PoC+4d
metasploit13 de out.
VulnCheck+91d
probabilidade de exploração
100%top 1% das CVEs
exploração observada
simVulnCheck
93 exploit(s) público(s)
O que os fabricantes declaram (VEX)

Declarações oficiais dos fabricantes em formato CSAF/VEX: se o produto deles está afetado, já corrigido ou descartado — e por quê. É afirmação do fabricante, não juízo do Vexday.

Afetado
4 produtos (5 componentes)
Red Hat OpenShift Container Platform 3.11 · Red Hat Integration Camel K 1 · Red Hat JBoss Enterprise Application Platform 7 · Red Hat JBoss Enterprise Application Platform Expansion Pack
workaround: This flaw may be avoided by ensuring that any external inputs used with the Commons-Text lookup methods are sanitized properly. Untrusted input should always be thoroughly sanitized before using in any potentially risky situations.
Corrigido
18 produtos (129 componentes)
Red Hat JBoss Enterprise Application Platform 7.3 EUS for RHEL 7 Server · Red Hat JBoss Enterprise Application Platform 7.1 EUS for RHEL 7 Server · OpenShift Developer Tools and Services for OCP 4.11 for RHEL 8 · OpenShift Developer Tools and Services for OCP 4.12 · OpenShift Developer Tools and Services for OCP 4.13 · e outros 13
Não afetado
20 produtos (2.385 componentes)porque o código vulnerável não está presente no produto
Red Hat Satellite 6.13 for RHEL 8 · Red Hat OpenShift Container Platform 4.10 · Red Hat OpenShift Container Platform 4.9 · Red Hat Satellite 6.12 for RHEL 8 · OpenShift Developer Tools and Services for OCP 4.11 for RHEL 8 · e outros 15
Apache Commons Text performs variable interpolation, allowing properties to be dynamically evaluated and expanded. The standard format for interpolation is "${prefix:name}", where "prefix" is used to locate an instance of org.apache.commons.text.lookup.StringLookup that performs the interpolation. Starting with version 1.5 and continuing through 1.9, the set of default Lookup instances included interpolators that could result in arbitrary code execution or contact with remote servers. These lookups are: - "script" - execute expressions using the JVM script execution engine (javax.script) - "dns" - resolve dns records - "url" - load values from urls, including from remote servers Applications using the interpolation defaults in the affected versions may be vulnerable to remote code execution or unintentional contact with remote servers if untrusted configuration values are used. Users are recommended to upgrade to Apache Commons Text 1.10.0, which disables the problematic interpolators by default.
PoCs públicas encontradas93
exploitdbwww.exploit-db.com/exploits/52261não verificadogithubgithub.com/karthikuj/cve-2022-42889-text4shell-docker76githubgithub.com/kljunowsky/CVE-2022-42889-text4shell57githubgithub.com/ClickCyber/cve-2022-4288939githubgithub.com/SeanWrightSec/CVE-2022-42889-PoC34githubgithub.com/cxzero/CVE-2022-42889-text4shell20githubgithub.com/f0ng/text4shellburpscanner20githubgithub.com/cryxnet/CVE-2022-42889-RCE15githubgithub.com/alealeluyah/CVE-2022-42889-Text4Shell-POC13githubgithub.com/korteke/CVE-2022-42889-POC10githubgithub.com/ifconfig-me/Log4Shell-Payloads8githubgithub.com/securekomodo/text4shell-poc8githubgithub.com/QAInsights/cve-2022-42889-jmeter7githubgithub.com/akshayithape-devops/CVE-2022-42889-POC5githubgithub.com/vickyaryan7/Text4shell-exploit5githubgithub.com/smileostrich/Text4Shell-Scanner5githubgithub.com/chainguard-dev/text4shell-policy4githubgithub.com/0xmaximus/Apache-Commons-Text-CVE-2022-428894githubgithub.com/uk0/cve-2022-42889-intercept3githubgithub.com/stavrosgns/Text4ShellPayloads3githubgithub.com/s3l33/CVE-2022-428893githubgithub.com/devenes/text4shell-cve-2022-428892githubgithub.com/Vulnmachines/text4shell-CVE-2022-428892githubgithub.com/humbss/CVE-2022-428892githubgithub.com/Gotcha1G/CVE-2022-428892githubgithub.com/sunnyvale-it/CVE-2022-42889-PoC2githubgithub.com/rhitikwadhvana/CVE-2022-42889-Text4Shell-Exploit-POC1githubgithub.com/Goultarde/CVE-2022-42889-text4shell1githubgithub.com/gokul-ramesh/text4shell-exploit1githubgithub.com/tulhan/commons-text-goat1githubgithub.com/galoget/CVE-2022-42889-Text4Shell-Docker0githubgithub.com/neerazz/CVE-2022-428890githubgithub.com/ReachabilityOrg/cve-2022-42889-text4shell-docker0githubgithub.com/Syndicate27/text4shell-exploit0githubgithub.com/engranaabubakar/CVE-2022-428890githubgithub.com/sangrok-jeon/CVE-2022-42889-Analysis0githubgithub.com/KosmicOwl045/ICT287-CVE-2022-428890githubgithub.com/kiralab/text4shell-scan0githubgithub.com/Sic4rio/CVE-2022-428890githubgithub.com/adarshpv9746/Text4shell--Automated-exploit---CVE-2022-428890githubgithub.com/joshbnewton31080/cve-2022-42889-text4shell0githubgithub.com/Hkaeeeer/CVE-2022-428890githubgithub.com/34006133/CVE-2022-428890githubgithub.com/Dima2021/cve-2022-42889-text4shell0githubgithub.com/rockmelodies/CVE-2022-428890githubgithub.com/eunomie/cve-2022-42889-check0githubgithub.com/hotblac/text4shell0githubgithub.com/necroteddy/CVE-2022-428890githubgithub.com/gustanini/CVE-2022-42889-Text4Shell-POC0githubgithub.com/aaronm-sysdig/text4shell-docker0githubgithub.com/DimaMend/cve-2022-42889-text4shell0githubgithub.com/shoucheng3/asf__commons-text_CVE-2022-42889_1-90vulncheckvulncheck.com/xdb/62c7fee2481dnão verificadovulncheckvulncheck.com/xdb/f48682e5693bnão verificadovulncheckvulncheck.com/xdb/cb76b2c83924não verificadovulncheckvulncheck.com/xdb/eacaa89daa19não verificadovulncheckvulncheck.com/xdb/c405fdc828c1não verificadovulncheckvulncheck.com/xdb/61b91daa4dcfnão verificadovulncheckvulncheck.com/xdb/dc8f45ac8044não verificadovulncheckvulncheck.com/xdb/5711893e4f71não verificadovulncheckvulncheck.com/xdb/a106c45cba03não verificadovulncheckvulncheck.com/xdb/2b3df872e90dnão verificadovulncheckvulncheck.com/xdb/a73e401bf0b9não verificadovulncheckvulncheck.com/xdb/fec0c3608e1enão verificadovulncheckvulncheck.com/xdb/096455128c6cnão verificadovulncheckvulncheck.com/xdb/c58be2e707denão verificadovulncheckvulncheck.com/xdb/6d22ed98f9b3não verificadovulncheckvulncheck.com/xdb/150dd9cbab37não verificadovulncheckvulncheck.com/xdb/db1b1f344e82não verificadovulncheckvulncheck.com/xdb/926c5926fe6cnão verificadovulncheckvulncheck.com/xdb/f11ebcf632b8não verificadovulncheckvulncheck.com/xdb/9d48c2c44fe0não verificadovulncheckvulncheck.com/xdb/7d70e4329519não verificadovulncheckvulncheck.com/xdb/074f3a1904d7não verificadovulncheckvulncheck.com/xdb/b96cd6d6920enão verificadocve_referencepacketstormsecurity.com/files/171003/OX-App-Suite-Cross-Site-Scripting-Server-Side-Request-Forgery.htmlnão verificadocve_referencepacketstormsecurity.com/files/176650/Apache-Commons-Text-1.9-Remote-Code-Execution.htmlnão verificadovulncheckvulncheck.com/xdb/2113b466a56anão verificadovulncheckvulncheck.com/xdb/0109e0687233não verificadovulncheckvulncheck.com/xdb/94c887a105d9não verificadovulncheckvulncheck.com/xdb/7129115e6e84não verificadovulncheckvulncheck.com/xdb/5c158c054bc7não verificadovulncheckvulncheck.com/xdb/be7e0fe71d54não verificadovulncheckvulncheck.com/xdb/746f9b679411não verificadovulncheckvulncheck.com/xdb/ec24d9df68c5não verificadovulncheckvulncheck.com/xdb/b0bb4241ccd2não verificadovulncheckvulncheck.com/xdb/b8b25076ed7enão verificadovulncheckvulncheck.com/xdb/314dca672d04não verificadovulncheckvulncheck.com/xdb/c1827ab386c2não verificadovulncheckvulncheck.com/xdb/e10770356a6bnão verificadovulncheckvulncheck.com/xdb/47c953546f47não verificadovulncheckvulncheck.com/xdb/7e7d2cbf38dfnão verificadovulncheckvulncheck.com/xdb/3e96c4d92251não verificado
⚠ Recursos públicos, para você avaliar a exposição de sistemas que controla ou está autorizado a testar. Teste apenas com autorização.