CVE-2022-22947

CRITICAL KEV NUCLEI

Spring Cloud Gateway Remote Code Execution

Title source: metasploit

Description

In spring cloud gateway versions prior to 3.1.1+ and 3.0.7+ , applications are vulnerable to a code injection attack when the Gateway Actuator endpoint is enabled, exposed and unsecured. A remote attacker could make a maliciously crafted request that could allow arbitrary remote execution on the remote host.

Exploits (66)

exploitdb WORKING POC
by Carlos E. Vieira · pythonwebappsjava
https://www.exploit-db.com/exploits/50799
nomisec WORKING POC 222 stars
by lucksec · remote
https://github.com/lucksec/Spring-Cloud-Gateway-CVE-2022-22947
nomisec WORKING POC 210 stars
by whwlsfb · remote
https://github.com/whwlsfb/cve-2022-22947-godzilla-memshell
nomisec WORKING POC 77 stars
by SecNN · poc
https://github.com/SecNN/CVE-2022-22947_Rce_Exp
nomisec WORKING POC 72 stars
by tangxiaofeng7 · remote
https://github.com/tangxiaofeng7/CVE-2022-22947-Spring-Cloud-Gateway
nomisec WORKING POC 59 stars
by 0730Nophone · client-side
https://github.com/0730Nophone/CVE-2022-22947-
nomisec WORKING POC 38 stars
by crowsec-edtech · poc
https://github.com/crowsec-edtech/CVE-2022-22947
nomisec WORKING POC 36 stars
by 0x7eTeam · poc
https://github.com/0x7eTeam/CVE-2022-22947
nomisec STUB 30 stars
by Tas9er · poc
https://github.com/Tas9er/SpringCloudGatewayRCE
nomisec WORKING POC 28 stars
by Zh0um1 · remote
https://github.com/Zh0um1/CVE-2022-22947
nomisec WORKING POC 18 stars
by viemsr · poc
https://github.com/viemsr/spring_cloud_gateway_memshell
nomisec WORKING POC 17 stars
by Enokiy · remote
https://github.com/Enokiy/cve-2022-22947-spring-cloud-gateway
nomisec STUB 15 stars
by B0rn2d · poc
https://github.com/B0rn2d/Spring-Cloud-Gateway-Nacos
nomisec WORKING POC 14 stars
by MoCh3n · poc
https://github.com/MoCh3n/CVE-2022-22947-Spring-Cloud-Gateway-SpelRCE
nomisec WORKING POC 13 stars
by k3rwin · poc
https://github.com/k3rwin/spring-cloud-gateway-rce
nomisec WORKING POC 13 stars
by Wrin9 · remote
https://github.com/Wrin9/CVE-2022-22947
nomisec WORKING POC 12 stars
by 4nNns · remote
https://github.com/4nNns/CVE-2022-22947
nomisec WORKING POC 11 stars
by twseptian · remote
https://github.com/twseptian/cve-2022-22947
nomisec WRITEUP 10 stars
by Vulnmachines · poc
https://github.com/Vulnmachines/spring-cve-2022-22947
nomisec WORKING POC 9 stars
by dingxiao77 · remote
https://github.com/dingxiao77/-cve-2022-22947-
nomisec WORKING POC 8 stars
by SiJiDo · remote
https://github.com/SiJiDo/CVE-2022-22947
nomisec WORKING POC 7 stars
by anansec · remote
https://github.com/anansec/CVE-2022-22947_EXP
nomisec WORKING POC 7 stars
by mrknow001 · poc
https://github.com/mrknow001/CVE-2022-22947
nomisec WORKING POC 7 stars
by hunzi0 · poc
https://github.com/hunzi0/CVE-2022-22947-Rce_POC
nomisec WORKING POC 6 stars
by Arrnitage · poc
https://github.com/Arrnitage/CVE-2022-22947_exp
nomisec WORKING POC 6 stars
by YutuSec · poc
https://github.com/YutuSec/SpEL
nomisec WORKING POC 6 stars
by darkb1rd · poc
https://github.com/darkb1rd/cve-2022-22947
nomisec WORKING POC 5 stars
by Greetdawn · poc
https://github.com/Greetdawn/CVE-2022-22947
nomisec WORKING POC 4 stars
by sagaryadav8742 · poc
https://github.com/sagaryadav8742/springcloudRCE
nomisec WORKING POC 3 stars
by LY613313 · poc
https://github.com/LY613313/CVE-2022-22947
nomisec WORKING POC 3 stars
by stayfoolish777 · remote
https://github.com/stayfoolish777/CVE-2022-22947-POC
nomisec WORKING POC 3 stars
by nu0l · poc
https://github.com/nu0l/cve-2022-22947
nomisec WORKING POC 2 stars
by Le1a · remote
https://github.com/Le1a/CVE-2022-22947
nomisec SCANNER 2 stars
by kkx600 · poc
https://github.com/kkx600/Burp_VulPscan
nomisec WORKING POC 2 stars
by Vancomycin-g · poc
https://github.com/Vancomycin-g/CVE-2022-22947
nomisec WORKING POC 2 stars
by 22ke · poc
https://github.com/22ke/CVE-2022-22947
nomisec WORKING POC 2 stars
by dbgee · poc
https://github.com/dbgee/CVE-2022-22947
nomisec WORKING POC 1 stars
by qq87234770 · remote
https://github.com/qq87234770/CVE-2022-22947
nomisec WORKING POC 1 stars
by kmahyyg · poc
https://github.com/kmahyyg/CVE-2022-22947
nomisec WORKING POC 1 stars
by Wrong-pixel · poc
https://github.com/Wrong-pixel/CVE-2022-22947-exp
nomisec STUB 1 stars
by aesm1p · poc
https://github.com/aesm1p/CVE-2022-22947-POC-Reproduce
nomisec WORKING POC 1 stars
by talentsec · remote
https://github.com/talentsec/Spring-Cloud-Gateway-CVE-2022-22947
nomisec WORKING POC 1 stars
by Jun-5heng · poc
https://github.com/Jun-5heng/CVE-2022-22947
nomisec WORKING POC 1 stars
by Nathaniel1025 · poc
https://github.com/Nathaniel1025/CVE-2022-22947
nomisec STUB 1 stars
by bysinks · poc
https://github.com/bysinks/CVE-2022-22947
nomisec STUB
by SanderSchepers1993 · poc
https://github.com/SanderSchepers1993/CyberSec2026
nomisec WORKING POC
by shoucheng3 · poc
https://github.com/shoucheng3/spring-cloud__spring-cloud-gateway_CVE-2022-22947_3-0-6
nomisec WORKING POC
by skysliently · remote
https://github.com/skysliently/CVE-2022-22947-pb-ai
nomisec WORKING POC
by cc3305 · remote
https://github.com/cc3305/CVE-2022-22947
nomisec WORKING POC
by superneilcn · poc
https://github.com/superneilcn/SpringExploitGUI
nomisec WORKING POC
by Sumitpathania03 · remote
https://github.com/Sumitpathania03/CVE-2022-22947
nomisec WORKING POC
by scopion · poc
https://github.com/scopion/CVE-2022-22947-exp
nomisec STUB
by hh-hunter · poc
https://github.com/hh-hunter/cve-2022-22947-docker
nomisec WORKING POC
by PaoPaoLong-lab · poc
https://github.com/PaoPaoLong-lab/Spring-CVE-2022-22947-
nomisec WORKING POC
by fbion · poc
https://github.com/fbion/CVE-2022-22947
nomisec WORKING POC
by nanaao · poc
https://github.com/nanaao/CVE-2022-22947-POC
nomisec STUB
by flying0er · poc
https://github.com/flying0er/CVE-2022-22947-goby
nomisec WORKING POC
by BerMalBerIst · poc
https://github.com/BerMalBerIst/CVE-2022-22947
nomisec WORKING POC
by Summer177 · remote
https://github.com/Summer177/Spring-Cloud-Gateway-CVE-2022-22947
nomisec WORKING POC
by scopion · poc
https://github.com/scopion/cve-2022-22947
vulncheck_xdb WRITEUP
remote
https://github.com/Londly01/poc-hub
vulncheck_xdb WORKING POC
remote
https://github.com/savior-only/CVE-2022-22947
vulncheck_xdb WORKING POC
remote
https://github.com/Axx8/CVE-2022-22947_Rce_Exp
vulncheck_xdb WORKING POC
remote
https://github.com/jm33-m0/emp3r0r
metasploit WORKING POC EXCELLENT
by Ayan Saha · rubypoclinux
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/linux/http/spring_cloud_gateway_rce.rb

Nuclei Templates (1)

Spring Cloud Gateway Code Injection
CRITICALby pdteam

Scores

CVSS v3 10.0
EPSS 0.9446
EPSS Percentile 100.0%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H

Details

CISA KEV 2022-05-16
VulnCheck KEV 2022-04-27
InTheWild.io 2022-05-13
ENISA EUVD EUVD-2022-1288
CWE
CWE-917 CWE-94
Status published
Products (17)
oracle/commerce_guided_search 11.3.2
oracle/communications_cloud_native_core_binding_support_function 1.11.0
oracle/communications_cloud_native_core_binding_support_function 22.1.3
oracle/communications_cloud_native_core_console 22.2.0
oracle/communications_cloud_native_core_network_exposure_function 22.1.0
oracle/communications_cloud_native_core_network_function_cloud_native_environment 1.10.0
oracle/communications_cloud_native_core_network_repository_function 1.15.0
oracle/communications_cloud_native_core_network_repository_function 1.15.1
oracle/communications_cloud_native_core_network_repository_function 22.1.2
oracle/communications_cloud_native_core_network_repository_function 22.2.0
... and 7 more
Published Mar 03, 2022
KEV Added May 16, 2022
Tracked Since Feb 18, 2026