logo

CVE-2022-29464

ID: 19dc3b7f-b098-5a05-b027-1ee310b8cbfa

STIX ID: report--19dc3b7f-b098-5a05-b027-1ee310b8cbfa

Feed Name: Arctic Wolf Blog

Threat Score
80/100

Date Published: 2022-04-28

Date Updated: 2026-04-26

...
...

This advisory describes CVE-2022-29464, a critical RCE vulnerability in multiple WSO2 products (CVSS 9.8) that allows unauthenticated file upload leading to remote code execution; attackers have been observed scanning for and exploiting the flaw to install web shells and coin miners on Linux and Windows systems. The report urges applying available patches issued in February 2022 or implementing WSO2 temporary mitigations if patching is not immediately feasible.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.