diff --git a/cves/2022/CVE-2022-23944.yaml b/cves/2022/CVE-2022-23944.yaml new file mode 100644 index 00000000000..94a797ab857 --- /dev/null +++ b/cves/2022/CVE-2022-23944.yaml @@ -0,0 +1,33 @@ +id: CVE-2022-23944 + +info: + name: ShenYu Admin Unauth Access + author: cckuakilong + severity: medium + description: User can access /plugin api without authentication. This issue affected Apache ShenYu 2.4.0 and 2.4.1. + reference: + - https://github.com/apache/incubator-shenyu/pull/2462/files + - https://nvd.nist.gov/vuln/detail/CVE-2022-23944 + - https://github.com/cckuailong/reapoc/blob/main/2022/CVE-2022-23944/vultarget/README.md + classification: + cve-id: CVE-2022-23944 + cwe-id: CWE-862 + tags: cve,cve2022,shenyu,unauth,apache + +requests: + - method: GET + path: + - "{{BaseURL}}/plugin" + + matchers-condition: and + matchers: + - type: word + part: body + words: + - '"message":"query success"' + - '"code":200' + condition: and + + - type: status + status: + - 200