Spring Core Framework before 5.13.18 or 5.2.20 is vulnerable to a remote code execution vulnerability.
This TTP sends a few cURL requests installing a backdoor temporarily. If the backdoor is installed and commands
can be executed you will be deemed vulnerable. You should be able to idenitfy and
remediate a backdoor that can execute shell commands that has been installed on your network.
To view this TTPs command, you must be logged in with a professional or enterprise license.
A TTP that exploits CVE-2022-22965 in Spring Framework
About PreludePrelude hardens an organization's defenses by continuously “asking” it questions through the form of safe cyberattacks. These attacks respond immediately to the latest vulnerabilities and cyber events, turning complex technical descriptions into deployable “questions”.Our mission is to increase the reach, frequency and usage of advanced security for all organizations.