CVE-2022-29464
ID: 19dc3b7f-b098-5a05-b027-1ee310b8cbfa
STIX ID: report--19dc3b7f-b098-5a05-b027-1ee310b8cbfa
Feed Name: Arctic Wolf Blog
Threat Score
This advisory describes CVE-2022-29464, a critical RCE vulnerability in multiple WSO2 products (CVSS 9.8) that allows unauthenticated file upload leading to remote code execution; attackers have been observed scanning for and exploiting the flaw to install web shells and coin miners on Linux and Windows systems. The report urges applying available patches issued in February 2022 or implementing WSO2 temporary mitigations if patching is not immediately feasible.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
