A SSRF vulnerability in parsing the href attribute of XOP:Include in MTOM requests in versions of Apache CXF before 3.5.5 and 3.4.10 allows an attacker to perform SSRF style attacks on webservices that take at least one parameter of any type.
PoC: CVE-2022-46364
Python POC, Exploit for CVE-2022-46364
PoC: CVE-2022-46364-htb-ctf
Exploit CVE-2022-46363
PoC: CVE-2022-46364-poc
CVE-2022-46364 Apache CXF XOP:Include SSRF / LFI
PoC: CVE-2022-46364-Proof-of-the-concept
This vulnerability allows an attacker to perform SSRF (Server-Side Request Forgery) attacks on Apache CXF webservices that accept MTOM/XOP requests. The issue exists in how the href attribute of xop:Include is parsed, allowing arbitrary URLs to be requested by the server.
PoC: CVE-2022-46364-Poc
CVE-2022-46364-Poc Apache CXF SSRF via MTOM XOP:Include
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Get alerted for CVEs like this
Register your stack and get notified within minutes when a matching CVE drops.
Start monitoring free