V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsDocs
CVE-2022-29464
CVE
Critical KEVConfirmedExploit available

Certain WSO2 products allow unrestricted file upload with resultant remote code execution. The attacker must use a /fileupload endpoint wit…

CVSS
9.8
Critical
EPSS
1.00
p100
Published
2022-01-01
Updated
2022-04-25
Description

Certain WSO2 products allow unrestricted file upload with resultant remote code execution. The attacker must use a /fileupload endpoint with a Content-Disposition directory traversal sequence to reach a directory under the web root, such as a ../../../../repository/deployment/server/webapps directory. This affects WSO2 API Manager 2.2.0 up to 4.0.0, WSO2 Identity Server 5.2.0 up to 5.11.0, WSO2 Identity Server Analytics 5.4.0, 5.4.1, 5.5.0 and 5.6.0, WSO2 Identity Server as Key Manager 5.3.0 up to 5.11.0, WSO2 Enterprise Integrator 6.2.0 up to 6.6.0, WSO2 Open Banking AM 1.4.0 up to 2.0.0 and WSO2 Open Banking KM 1.4.0, up to 2.0.0.

Tags · CWE
KEVPre-auth
CWE-22
CAPEC-64
CAPEC-76
CAPEC-78
CAPEC-79
CAPEC-126
Affected products
Api_manager 2.2.0–4.0.0Enterprise_integrator 6.2.0–6.6.0Identity_server 5.2.0–5.11.0Identity_server_analyticsIdentity_server_as_key_manager 5.3.0–5.10.0Open_banking_am 1.3.0–2.0.0Open_banking_iamOpen_banking_km 1.3.0–1.5.0
CVSS vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Timeline
2022-01-01
Published
2022-04-25
Added to KEV
2022-04-25
Updated
CVSS 3.1 breakdown
Attack Vector
AV: N
Network (N)
Attack Complexity
AC: L
Low (L)
Privileges Required
PR: N
None (N)
User Interaction
UI: N
None (N)
Scope
S: U
Unchanged (U)
Confidentiality Impact
C: H
High (H)
Integrity Impact
I: H
High (H)
Availability Impact
A: H
High (H)
Exploit indicators
EPSS
1.000 · p100
Known exploited (KEV)
Yes
Known exploits — Сканер-ВС
CVE-2022-29464
cisa · https://www.cisa.gov/known-exploited-vulnerabilities-catalog
Enterprise
Affected software
ProductVendorStatus
api_manager*Exploited
enterprise_integrator*Exploited
identity_server*Exploited
identity_server_analytics*Exploited
identity_server_as_key_manager*Exploited
open_banking_am*Exploited
open_banking_iam*Exploited
open_banking_km*Exploited
Source databases
CVE
Related vulnerabilities