
CVE-2022-29464 Exploit
The CVE-2022-29464 affects some WSO2 products such as WSO2 API Manager and WSO2 Open Banking, allowing arbitrary file upload and remote code execution.
Affected Products:
Warning: For educational purposes only.
Clone this repository:
git clone https://github.com/Pasch0/WSO2RCE.git
cd WSO2RCE
pip install rich
To start the attack, use the -u flag to specify a single target URL or -f for a file with multiple targets:
python run.py -u https://target.com/

When accessing the backdoor via the URL generated during script execution, you can interact with the text field by entering system commands and receiving the response on the page.

WSO2 provided temporary mitigations to customers in January 2022 and provided fixes for all supported product versions listed on the WSO2 Support Matrix (status "available" and "obsolete") in February. If you are a WSO2 customer with a Support Subscription, use WSO2 Updates to apply the fix.
For more details visit: https://docs.wso2.com/display/Security/Security+Advisory+WSO2-2021-1738