Sploitus

CVE-2022-34269

No indexed exploits for CVE-2022-34269 yet

An issue was discovered in RWS WorldServer before 11.7.3. An authenticated, remote attacker can perform a ws-legacy/load_dtd?system_id= blind SSRF attack to deploy JSP code to the Apache Axis service running on the localhost interface, leading to command execution.

Affected products
Apache Axis
Rws Worldserver
< 11.7.3
Fix
Available
CVSS 3.1
8.8 HIGH
EPSS
1.7% (75th percentile)
Weakness
CWE-918
NVD status
Analyzed
Published
2023-12-25
CVE-2022-34269 at NVD
Authoritative description, scoring and affected products

No indexed exploits for CVE-2022-34269 yet

Our index is partial: it proves presence, never absence

No exploit for CVE-2022-34269 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.