peter bassill · operator
$ cve CVE-2022-22963 JSON

CVE-2022-22963 KEV EXPLOIT

9.8
CRITICAL · CVSS 3.1 · EPSS 99.9% (pctl 100)

Patch first

On CISA KEV — known exploited in the wild, due 2022-09-15.

Description

In Spring Cloud Function versions 3.1.6, 3.2.2 and older unsupported versions, when using routing functionality it is possible for a user to provide a specially crafted SpEL as a routing-expression that may result in remote code execution and access to local resources.

Scoring

CVSS9.8 (CRITICAL, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
EPSS99.94% — more likely to be exploited than 100% of all CVEs
WeaknessCWE-94
On CISA KEVyes — remediate by 2022-09-15
Public exploityes
Published2022-04-01
Last modified2026-06-17

CISA KEV

NameVMware Tanzu Spring Cloud Function Remote Code Execution Vulnerability
Added2022-08-25
Due2022-09-15
Vendor / productVMware Tanzu / Spring Cloud
Ransomware usenone reported

Affected (28)

VendorProduct
oraclebanking branch
oraclebanking cash management
oraclebanking corporate lending process management
oraclebanking credit facilities process management
oraclebanking electronic data exchange for corporates
oraclebanking liquidity management
oraclebanking origination
oraclebanking supply chain finance
oraclebanking trade finance process management
oraclebanking virtual account management
oraclecommunications cloud native core automated test suite
oraclecommunications cloud native core console
oraclecommunications cloud native core network exposure function
oraclecommunications cloud native core network function cloud native environment
oraclecommunications cloud native core network repository function
oraclecommunications cloud native core network slice selection function
oraclecommunications cloud native core policy
oraclecommunications cloud native core security edge protection proxy
oraclecommunications cloud native core unified data repository
oraclecommunications communications policy management
oraclefinancial services analytical applications infrastructure
oraclefinancial services behavior detection platform
oraclefinancial services enterprise case management
oraclemysql enterprise monitor
oracleproduct lifecycle analytics
oracleretail xstore point of service
oraclesd-wan edge
vmwarespring cloud function

Public exploits

SourceTitleDate
exploit-dbSpring Cloud 3.2.2 - Remote Command Execution (RCE)2023-07-11

References

→ the Explorer  ·  watch your stack  ·  NVD