Description
In Spring Cloud Function versions 3.1.6, 3.2.2 and older unsupported versions, when using routing functionality it is possible for a user to provide a specially crafted SpEL as a routing-expression that may result in remote code execution and access to local resources.
Related CPE's
a
vmware
spring_cloud_function
a
oracle
banking_liquidity_management
a
oracle
communications_cloud_native_core_automated_test_suite
a
oracle
communications_cloud_native_core_console
a
oracle
communications_cloud_native_core_network_function_cloud_native_environment
a
oracle
communications_cloud_native_core_network_repository_function
a
oracle
communications_cloud_native_core_network_slice_selection_function
a
oracle
communications_cloud_native_core_policy
a
oracle
communications_cloud_native_core_security_edge_protection_proxy
a
oracle
communications_cloud_native_core_unified_data_repository
a
oracle
financial_services_analytical_applications_infrastructure
a
oracle
financial_services_behavior_detection_platform
a
oracle
financial_services_enterprise_case_management
a
oracle
retail_xstore_point_of_service
a
oracle
sd-wan_edge
References
http://packetstormsecurity.com/files/173430/Spring-Cloud-3.2.2-Remote-Command-Execution.html
https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2022-0005
https://tanzu.vmware.com/security/cve-2022-22963
https://www.oracle.com/security-alerts/cpuapr2022.html
https://www.oracle.com/security-alerts/cpujul2022.html
http://packetstormsecurity.com/files/173430/Spring-Cloud-3.2.2-Remote-Command-Execution.html
https://psirt.global.sonicwall.com/vuln-detail/SNWLID-2022-0005
https://tanzu.vmware.com/security/cve-2022-22963
https://www.oracle.com/security-alerts/cpuapr2022.html
https://www.oracle.com/security-alerts/cpujul2022.html
CVSS impact metrics
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
9.8 · Critical
CVSS V3.1
CVSS V3.0
CVSS V2.0
Information
Source identifier
Vulnerability status
Analyzed
Published
2022-04-01T23:15:13.663
3 years agoLast modified
2025-03-13T16:36:53.717
1 month ago