Public exploit available
Public proof-of-concept or exploit code exists (ExploitDB / Metasploit / Nuclei).

CVE-2018-1335

CWE-77Command Injection15 documents11 sources
Severity
8.1HIGH
EPSS
93.9%
top 0.13%
CISA KEV
Not in KEV
Exploit
PoC available
Public exploit / PoC exists
Timeline
PublishedApr 25
Latest updateAug 5

Description

From Apache Tika versions 1.7 to 1.17, clients could send carefully crafted headers to tika-server that could be used to inject commands into the command line of the server running tika-server. This vulnerability only affects those running tika-server on a server that is open to untrusted clients. The mitigation is to upgrade to Tika 1.18.

CVSS vector

CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:HExploitability: 2.2 | Impact: 5.9

Affected Packages4 packages

NVDapache/tika< 1.18
Mavenorg.apache.tika:tika-core1.71.18
Debiantika< 1.18-1

🔴Vulnerability Details

5
GHSA
Command injection in org.apache.tika:tika-core2018-10-17
OSV
Command injection in org.apache.tika:tika-core2018-10-17
OSV
CVE-2018-1335: From Apache Tika versions 12018-04-25
CVEList
CVE-2018-1335: From Apache Tika versions 12018-04-25
VulnCheck
Apache Tika versions 1.7 to 1.17 Command Injection2018

💥Exploits & PoCs

3
Exploit-DB
Apache Tika 1.15 - 1.17 - Header Command Injection (Metasploit)2019-08-05
Exploit-DB
Apache Tika-server < 1.18 - Command Injection2019-03-13
Nuclei
Apache Tika < 1.1.8 - Header Command Injection

📋Vendor Advisories

3
Red Hat
tika: Command injection in tika-server can allow remote attackers to execute arbitrary commands via crafted headers2018-04-25
Debian
CVE-2018-1335: tika - From Apache Tika versions 1.7 to 1.17, clients could send carefully crafted head...2018
Apache
Apache tika: CVE-2018-1335

💬Community

3
Bugzilla
CVE-2018-18025 ImageMagick: heap-based buffer over-read in the EncodeImage function of coders/pict.c2018-10-08
Bugzilla
CVE-2018-1335 tika: Command injection in tika-server can allow remote attackers to execute arbitrary commands via crafted headers2018-04-27
Bugzilla
CVE-2018-1335 tika: Command injection in tika-server can allow remote attackers to execute arbitrary commands via crafted headers [fedora-all]2018-04-27
CVE-2018-1335 (HIGH CVSS 8.1) | From Apache Tika versions 1.7 to 1. | cvebase.io