Apache MINA是美国阿帕奇(Apache)基金会的一款网络应用程序框架。该产品主要用于开发高性能和高可伸缩性的网络应用程序。 Apache MINA 2.9.1及之前版本存在代码问题漏洞,该漏洞源于 使用 Java 反序列化加载序列化java.security.PrivateKey,攻击者利用该漏洞可以选择加载一个主机密钥SSH 服务器。
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| Apache Software Foundation | Apache MINA SSHD | unspecified≤ 2.9.1 |
affected |
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| Apache Software Foundation | Apache MINA SSHD | unspecified ~ 2.9.1 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|---|---|---|
| 1 | POC,EXP,chatGPT for me | https://github.com/hktalent/CVE-2022-45047 | POC Details |
No public POC found.
Login to generate AI POCNo comments yet