Rewterz
Rewterz Threat Advisory – CVE-2022-45470 – Apache Hama Vulnerability
November 23, 2022
Rewterz
Rewterz Threat Alert – APT38 Hidden Cobra aka Lazarus – Active IOCs
November 23, 2022

Rewterz Threat Advisory – CVE-2022-40308: Apache Archiva Vulnerbility

Severity

High

Analysis Summary

CVE-2022-40308

If anonymous read enabled, it’s possible to read the database file directly without logging in.

Impact

Arbitrary Code Execution

Indicators Of Compromise

CVE

  • CVE-2022-40308

Affected Vendors

Apache

Affected Products

  • Apache Archiva 2.2.8

Remediation

No patched version is available yet.