Rewterz
Rewterz Threat Alert – Earth Preta Spear-Phishing Campaign Targets Governments Worldwide – Active IOCs
December 5, 2022
Rewterz
Rewterz Threat Advisory – CVE-2021-37533 – Apache Commons Net Vulnerability
December 5, 2022

Rewterz Threat Advisory – CVE-2022-46366 – Apache Tapestry Vulnerability

Severity

High

Analysis Summary

CVE-2022-46366

Apache Tapestry could allow a remote attacker to execute arbitrary code on the system, caused by an unsafe deserialization flaw. By sending specially-crafted request, an attacker could exploit this vulnerability to execute arbitrary code on the system.

Impact

Code Execution

Indicators Of Compromise

CVE

  • CVE-2022-46366

Affected Vendors

Apache

Affected Products

  • Apache Tapestry 3.0

Remediation

Refer to Apache Website for patch, upgrade or suggested workaround information.

Apache Website