CVE-2022-24112
קריטית 9.8 מנוצלת בשטח (KEV)
ניצול פעיל מאומת — קטלוג CISA KEV
- שם
- Apache APISIX Authentication Bypass Vulnerability
- נוסף לקטלוג
- יעד טיפול (פדרלי)
- פעולה נדרשת
- Apply updates per vendor instructions.
תיאור (מקור, אנגלית)
An attacker can abuse the batch-requests plugin to send requests to bypass the IP restriction of Admin API. A default configuration of Apache APISIX (with default API key) is vulnerable to remote code execution. When the admin key was changed or the port of Admin API was changed to a port different from the data panel, the impact is lower. But there is still a risk to bypass the IP restriction of Apache APISIX's data panel. There is a check in the batch-requests plugin which overrides the client IP with its real remote IP. But due to a bug in the code, this check can be bypassed.
מדדים
- CVSS 3.1
-
9.8 (CRITICAL)
מקור הציון: NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H - EPSS — סבירות ניצול
- 96% (אחוזון 100) נכון ל-25/7/2026
- CWE
- CWE-290
מוצרים מושפעים
apache: apisix
קישורים
- https://lists.apache.org/thread/lcdqywz8zy94mdysk7p3gfdgn51jmt94 Mailing ListMitigationVendor Advisory
- https://lists.apache.org/thread/lcdqywz8zy94mdysk7p3gfdgn51jmt94 Mailing ListMitigationVendor Advisory
- http://packetstormsecurity.com/files/166228/Apache-APISIX-Remote-Code-Executio… ExploitThird Party AdvisoryVDB Entry
- http://packetstormsecurity.com/files/166328/Apache-APISIX-2.12.1-Remote-Code-E… ExploitThird Party AdvisoryVDB Entry
- http://packetstormsecurity.com/files/166228/Apache-APISIX-Remote-Code-Executio… ExploitThird Party AdvisoryVDB Entry
- http://packetstormsecurity.com/files/166328/Apache-APISIX-2.12.1-Remote-Code-E… ExploitThird Party AdvisoryVDB Entry
- http://www.openwall.com/lists/oss-security/2022/02/11/3 Mailing ListMitigationThird Party Advisory
- http://www.openwall.com/lists/oss-security/2022/02/11/3 Mailing ListMitigationThird Party Advisory
- https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-202… Third Party AdvisoryUS Government Resource