CVE Vulnerabilities

CVE-2022-46364

Server-Side Request Forgery (SSRF)

Published: Dec 13, 2022 | Modified: Nov 21, 2024
CVSS 3.x
9.8
CRITICAL
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS 2.x
RedHat/V2
RedHat/V3
9.8 IMPORTANT
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Ubuntu

A SSRF vulnerability in parsing the href attribute of XOP:Include in MTOM requests in versions of Apache CXF before 3.5.5 and 3.4.10 allows an attacker to perform SSRF style attacks on webservices that take at least one parameter of any type. 

Weakness

The web server receives a URL or similar request from an upstream component and retrieves the contents of this URL, but it does not sufficiently ensure that the request is being sent to the expected destination.

Affected Software

Name Vendor Start Version End Version
Cxf Apache * 3.4.10 (excluding)
Cxf Apache 3.5.0 (including) 3.5.5 (excluding)
EAP 7.4 async RedHat CXF *
Migration Toolkit for Runtimes 1 on RHEL 8 RedHat org.keycloak-keycloak-parent *
Migration Toolkit for Runtimes 1 on RHEL 8 RedHat mtr/mtr-web-container-rhel8:1.0-22 *
MTA-6.1-RHEL-8 RedHat mta/mta-windup-addon-rhel8:6.1.0-11 *
Red Hat Fuse 7.11.1.P1 RedHat CXF *
Red Hat Fuse 7.12 RedHat *
Red Hat JBoss Enterprise Application Platform 7 RedHat CXF *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-apache-sshd *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-elytron-web *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-hal-console *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-hibernate-search *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-ironjacamar *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jackson-annotations *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jackson-core *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jackson-databind *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jackson-jaxrs-providers *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jackson-modules-base *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jackson-modules-java8 *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-javaee-security-soteria *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jboss-ejb-client *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jboss-jsf-api_2.3_spec *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jboss-jsp-api_2.3_spec *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jboss-remoting *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jboss-server-migration *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jettison *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-undertow *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-wildfly *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-wildfly-elytron *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-woodstox-core *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-apache-sshd *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-elytron-web *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-hal-console *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-hibernate-search *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-ironjacamar *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jackson-annotations *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jackson-core *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jackson-databind *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jackson-jaxrs-providers *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jackson-modules-base *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jackson-modules-java8 *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-javaee-security-soteria *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jboss-ejb-client *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jboss-jsf-api_2.3_spec *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jboss-jsp-api_2.3_spec *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jboss-remoting *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jboss-server-migration *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jettison *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-undertow *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-wildfly *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-wildfly-elytron *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-woodstox-core *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-apache-sshd *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-elytron-web *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-hal-console *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-hibernate-search *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-ironjacamar *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jackson-annotations *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jackson-core *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jackson-databind *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jackson-jaxrs-providers *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jackson-modules-base *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jackson-modules-java8 *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-javaee-security-soteria *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jboss-ejb-client *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jboss-jsf-api_2.3_spec *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jboss-jsp-api_2.3_spec *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jboss-remoting *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jboss-server-migration *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-jettison *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-undertow *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-wildfly *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-wildfly-elytron *
Red Hat JBoss Enterprise Application Platform 7 RedHat eap7-woodstox-core *
Red Hat JBoss Enterprise Application Platform 7.1 EUS for RHEL 7 RedHat eap7-apache-cxf-0:3.1.16-3.SP1_redhat_00001.1.ep7.el7 *
Red Hat JBoss Enterprise Application Platform 7.3 EUS for RHEL 7 RedHat eap7-apache-cxf-0:3.4.10-1.SP1_redhat_00001.1.el7eap *
Red Hat JBoss Enterprise Application Platform 7.3 EUS for RHEL 7 RedHat eap7-avro-0:1.7.6-8.redhat_00003.1.el7eap *
Red Hat JBoss Enterprise Application Platform 7.3 EUS for RHEL 7 RedHat eap7-h2database-0:1.4.197-3.redhat_00004.1.el7eap *
Red Hat JBoss Enterprise Application Platform 7.3 EUS for RHEL 7 RedHat eap7-jboss-annotations-api_1.3_spec-0:2.0.1-4.Final_redhat_00001.1.el7eap *
Red Hat JBoss Enterprise Application Platform 7.3 EUS for RHEL 7 RedHat eap7-jboss-marshalling-0:2.0.15-1.Final_redhat_00001.1.el7eap *
Red Hat JBoss Enterprise Application Platform 7.3 EUS for RHEL 7 RedHat eap7-jboss-server-migration-0:1.7.2-12.Final_redhat_00013.1.el7eap *
Red Hat JBoss Enterprise Application Platform 7.3 EUS for RHEL 7 RedHat eap7-jboss-xnio-base-0:3.7.13-1.Final_redhat_00001.1.el7eap *
Red Hat JBoss Enterprise Application Platform 7.3 EUS for RHEL 7 RedHat eap7-log4j-jboss-logmanager-0:1.2.2-2.Final_redhat_00002.1.el7eap *
Red Hat JBoss Enterprise Application Platform 7.3 EUS for RHEL 7 RedHat eap7-wildfly-0:7.3.11-4.GA_redhat_00002.1.el7eap *
Red Hat JBoss Enterprise Application Platform 7.3 EUS for RHEL 7 RedHat eap7-wss4j-0:2.3.3-2.redhat_00001.1.el7eap *
Red Hat JBoss Enterprise Application Platform 7.3 EUS for RHEL 7 RedHat eap7-xalan-j2-0:2.7.1-38.redhat_00015.1.el7eap *
Red Hat JBoss Enterprise Application Platform 7.3 EUS for RHEL 7 RedHat eap7-xml-security-0:2.2.3-2.redhat_00001.1.el7eap *
Red Hat JBoss Enterprise Application Platform 7.4 for RHEL 8 RedHat eap7-apache-cxf-0:3.4.10-1.redhat_00001.1.el8eap *
Red Hat JBoss Enterprise Application Platform 7.4 for RHEL 9 RedHat eap7-apache-cxf-0:3.4.10-1.redhat_00001.1.el9eap *
Red Hat JBoss Enterprise Application Platform 7.4 on RHEL 7 RedHat eap7-apache-cxf-0:3.4.10-1.redhat_00001.1.el7eap *
Red Hat Single Sign-On 7 RedHat *
Red Hat Single Sign-On 7.6 for RHEL 7 RedHat rh-sso7-keycloak-0:18.0.6-1.redhat_00001.1.el7sso *
Red Hat Single Sign-On 7.6 for RHEL 8 RedHat rh-sso7-keycloak-0:18.0.6-1.redhat_00001.1.el8sso *
Red Hat Single Sign-On 7.6 for RHEL 9 RedHat rh-sso7-keycloak-0:18.0.6-1.redhat_00001.1.el9sso *
RHEL-8 based Middleware Containers RedHat rh-sso-7/sso76-openshift-rhel8:7.6-20 *
RHINT Camel-Springboot 3.14.5.P1 RedHat CXF *
RHINT Camel-Springboot 3.18.3.P2 RedHat *
RHPAM 7.13.1 async RedHat CXF *

References