{"id":270987,"date":"2022-04-02T09:20:35","date_gmt":"2022-04-02T08:20:35","guid":{"rendered":"https:\/\/www.stormshield.com\/?p=270987"},"modified":"2024-05-29T09:00:03","modified_gmt":"2024-05-29T08:00:03","slug":"alerte-securite-spring4shell-la-reponse-des-produits-stormshield","status":"publish","type":"post","link":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-spring4shell-la-reponse-des-produits-stormshield\/","title":{"rendered":"Alerte s\u00e9curit\u00e9 Spring4Shell : la r\u00e9ponse des produits Stormshield"},"content":{"rendered":"<p><strong>Ce mois d'avril commence fort avec la d\u00e9couverte d\u2019une nouvelle vuln\u00e9rabilit\u00e9 au score de 9.8 de type RCE (Remote Code Execution) sans aucune authentification pr\u00e9alable dans le framework opensource Java Spring.<\/strong><\/p>\n<p>&nbsp;<\/p>\n<h2>Le contexte de l'attaque Spring4Shell<\/h2>\n<p>Apr\u00e8s la biblioth\u00e8que Java Log4j, un vuln\u00e9rabilit\u00e9 de type <em>Zero-Day<\/em> concernant le framework Java Spring a \u00e9t\u00e9 identifi\u00e9e et corrig\u00e9e le 31 mars. Mais il appara\u00eet que cette vuln\u00e9rabilit\u00e9 est d\u00e9j\u00e0 activement exploit\u00e9e, puisque le code le permettant ayant \u00e9t\u00e9 rendu publiquement disponible sur le web.<\/p>\n<p>Rappelons que ce framework est largement utilis\u00e9 pour le d\u00e9veloppement d\u2019applications web et son inclusion dans un grand nombre de logiciels laisse donc pr\u00e9sager le m\u00eame cauchemar que Log4Shell pour la communaut\u00e9 des d\u00e9veloppeurs.<\/p>\n<p>&nbsp;<\/p>\n<h2>Les d\u00e9tails techniques de la vuln\u00e9rabilit\u00e9<\/h2>\n<p>La vuln\u00e9rabilit\u00e9 est pr\u00e9sente dans la fonction <strong>getCachedIntrospectionResults<\/strong> qui expose l\u2019ensemble de la classe de l\u2019objet lors de l\u2019association des param\u00e8tres.<\/p>\n<p>Le m\u00e9canisme d\u2019association des requ\u00eates HTTP \u00e0 des objets de l\u2019application est donc impact\u00e9. Cela signifie que l\u2019utilisateur peut forger une requ\u00eate HTTP (via l\u2019URL) afin d\u2019obtenir en retour de la requ\u00eate le d\u00e9tail de la classe d\u2019objet. Ce type d\u2019exposition peut \u00eatre utilis\u00e9 pour charger en retour un code malveillant qui ira modifier la classe dynamiquement, voir ex\u00e9cuter du code. Typiquement dans le cas observ\u00e9, il s\u2019agit de charger un webshell qui donnera \u00e0 l\u2019utilisateur distant le contr\u00f4le total de la machine, avec les droits d\u2019ex\u00e9cution de la machine Java (souvent root).<\/p>\n<p>Afin de comprendre l\u2019origine de la vuln\u00e9rabilit\u00e9, il faut remonter au <a href=\"https:\/\/github.com\/spring-projects\/spring-framework\/pull\/28075\" target=\"_blank\" rel=\"noopener\">commentaire<\/a> autour d\u2019une fonction potentiellement dangereuse expos\u00e9e par le framework Spring avertissant le d\u00e9veloppeur d\u2019un risque de s\u00e9curit\u00e9.<\/p>\n<div id=\"attachment_271104\" style=\"width: 788px\" class=\"wp-caption aligncenter\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-271104\" class=\"wp-image-271104\" src=\"https:\/\/www.stormshield.com\/wp-content\/uploads\/capture-decran-2022-04-02-105338.png\" alt=\"\" width=\"778\" height=\"192\" srcset=\"https:\/\/www.stormshield.com\/wp-content\/uploads\/capture-decran-2022-04-02-105338.png 2046w, https:\/\/www.stormshield.com\/wp-content\/uploads\/capture-decran-2022-04-02-105338-300x74.png 300w, https:\/\/www.stormshield.com\/wp-content\/uploads\/capture-decran-2022-04-02-105338-1024x253.png 1024w, https:\/\/www.stormshield.com\/wp-content\/uploads\/capture-decran-2022-04-02-105338-768x190.png 768w, https:\/\/www.stormshield.com\/wp-content\/uploads\/capture-decran-2022-04-02-105338-1536x380.png 1536w, https:\/\/www.stormshield.com\/wp-content\/uploads\/capture-decran-2022-04-02-105338-1396x345.png 1396w, https:\/\/www.stormshield.com\/wp-content\/uploads\/capture-decran-2022-04-02-105338-700x173.png 700w\" sizes=\"auto, (max-width: 778px) 100vw, 778px\" \/><p id=\"caption-attachment-271104\" class=\"wp-caption-text\"><small><em>Illustration 1 : commentaire du commit autour du ticket gh-28075<\/em><\/small><\/p><\/div>\n<p>C\u2019est l\u2019\u00e9v\u00e8nement d\u00e9clencheur de plusieurs recherches de vuln\u00e9rabilit\u00e9s conduites sur ce m\u00e9canisme du framework Spring qui ont rapidement abouties \u00e0 la d\u00e9couverte de la CVE qui nous int\u00e9resse ici, Spring4Shell.<\/p>\n<p>Cependant, Spring4Shell n\u2019est que le contournement d\u2019une ancienne vuln\u00e9rabilit\u00e9, la CVE-2010-1622, impactant le constructeur de la classe <strong>CachedIntrospectionResults<\/strong> qui a d\u00e9j\u00e0 \u00e9t\u00e9 patch\u00e9e.<\/p>\n<div id=\"attachment_271116\" style=\"width: 805px\" class=\"wp-caption aligncenter\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-271116\" class=\"wp-image-271116\" src=\"https:\/\/www.stormshield.com\/wp-content\/uploads\/capture-alerte-3-1-1024x307.jpg\" alt=\"\" width=\"795\" height=\"238\" srcset=\"https:\/\/www.stormshield.com\/wp-content\/uploads\/capture-alerte-3-1-1024x307.jpg 1024w, https:\/\/www.stormshield.com\/wp-content\/uploads\/capture-alerte-3-1-300x90.jpg 300w, https:\/\/www.stormshield.com\/wp-content\/uploads\/capture-alerte-3-1-768x230.jpg 768w, https:\/\/www.stormshield.com\/wp-content\/uploads\/capture-alerte-3-1-1536x460.jpg 1536w, https:\/\/www.stormshield.com\/wp-content\/uploads\/capture-alerte-3-1-1396x418.jpg 1396w, https:\/\/www.stormshield.com\/wp-content\/uploads\/capture-alerte-3-1-700x210.jpg 700w, https:\/\/www.stormshield.com\/wp-content\/uploads\/capture-alerte-3-1.jpg 1980w\" sizes=\"auto, (max-width: 795px) 100vw, 795px\" \/><p id=\"caption-attachment-271116\" class=\"wp-caption-text\"><small><em>Illustration 2 : patch du 2 juillet 2010 du framework Spring v2.5 pour la CVE-2010-1622<\/em><\/small><\/p><\/div>\n<div id=\"attachment_271111\" style=\"width: 810px\" class=\"wp-caption aligncenter\"><img loading=\"lazy\" decoding=\"async\" aria-describedby=\"caption-attachment-271111\" class=\"wp-image-271111\" src=\"https:\/\/www.stormshield.com\/wp-content\/uploads\/capture-alerte-2-1.jpg\" alt=\"\" width=\"800\" height=\"388\" srcset=\"https:\/\/www.stormshield.com\/wp-content\/uploads\/capture-alerte-2-1.jpg 1979w, https:\/\/www.stormshield.com\/wp-content\/uploads\/capture-alerte-2-1-300x146.jpg 300w, https:\/\/www.stormshield.com\/wp-content\/uploads\/capture-alerte-2-1-1024x497.jpg 1024w, https:\/\/www.stormshield.com\/wp-content\/uploads\/capture-alerte-2-1-768x373.jpg 768w, https:\/\/www.stormshield.com\/wp-content\/uploads\/capture-alerte-2-1-1536x746.jpg 1536w, https:\/\/www.stormshield.com\/wp-content\/uploads\/capture-alerte-2-1-1396x678.jpg 1396w, https:\/\/www.stormshield.com\/wp-content\/uploads\/capture-alerte-2-1-700x340.jpg 700w\" sizes=\"auto, (max-width: 800px) 100vw, 800px\" \/><p id=\"caption-attachment-271111\" class=\"wp-caption-text\"><small><em>Illustration 3 : patch du 31 mars 2022 du framework Spring v5.3 pour la CVE-2022-22965<\/em><\/small><\/p><\/div>\n<p>&nbsp;<\/p>\n<h3>Versions et logiciels impact\u00e9s<\/h3>\n<p>Il a \u00e9t\u00e9 observ\u00e9 des preuves de concept sur les logiciels et SDK suivants\u00a0:<\/p>\n<ul>\n<li>JDK 9 et sup\u00e9rieur ;<\/li>\n<li>le Servlet Apache Tomcat en tant que container ;<\/li>\n<li>les d\u00e9pendances spring-webmvc et spring-webflux ;<\/li>\n<li>le framework Spring en versions 5.3.0 \u00e0 5.3.17, 5.2.0 \u00e0 5.2.19 et les versions plus anciennes ;<\/li>\n<li>toute application Java utilisant le pack Spring Beans.<\/li>\n<\/ul>\n<h3>IoCs<\/h3>\n<p>Voici une liste d\u2019IPs ayant tent\u00e9 d\u2019exploiter la vuln\u00e9rabilit\u00e9\u00a0:<\/p>\n<ul>\n<li>37.120.203.76<\/li>\n<li>38.83.79.203<\/li>\n<li>45.155.204.146<\/li>\n<li>89.248.165.72<\/li>\n<li>100.26.40.121<\/li>\n<li>103.27.108.196<\/li>\n<li>103.214.146.5<\/li>\n<li>112.5.154.7<\/li>\n<li>116.204.211.22<\/li>\n<li>120.36.97.210<\/li>\n<li>149.28.147.15<\/li>\n<li>154.6.19.197<\/li>\n<li>158.247.202.6<\/li>\n<li>172.93.189.42<\/li>\n<\/ul>\n<p>&nbsp;<\/p>\n<h2>Les moyens de protection fournis par Stormshield<\/h2>\n<h3>Stormshield Network Security<\/h3>\n<p>Une signature IPS a \u00e9t\u00e9 publi\u00e9e sur SNS, permettant de d\u00e9tecter et bloquer les tentatives de manipulation de la classe \u00ab <em>classLoader<\/em> \u00bb depuis une requ\u00eate HTTP POST. Celles-ci fonctionnent donc via l\u2019analyse du trafic HTTP, qui doit donc \u00eatre en clair lors de son inspection. Si le flux est chiffr\u00e9, le proxy SSL doit \u00eatre activ\u00e9 (flux sortant), ou alors le d\u00e9chiffrement doit se faire sur un autre \u00e9quipement en amont (flux entrant). Cette signature est:<\/p>\n<p><strong>http:client:data.163<\/strong> <strong>\u2192<\/strong><strong> Spring4Shell RCE attempt on HTTP POST request (CVE-2022-22925) <\/strong><\/p>\n<p>L\u2019ensemble des IoCs list\u00e9s sont int\u00e9gr\u00e9s \u00e0 notre IP Reputation.<\/p>\n<table class=\" aligncenter\" width=\"623\">\n<tbody>\n<tr>\n<td style=\"text-align: center;\" width=\"312\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-271012\" src=\"https:\/\/www.stormshield.com\/wp-content\/uploads\/candran-indice.jpg\" alt=\"\" width=\"191\" height=\"144\" \/><\/p>\n<p><em>Indice de confiance de la protection propos\u00e9e par Stormshield<\/em><\/td>\n<td width=\"312\">\n<p style=\"text-align: center;\"><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-271012\" src=\"https:\/\/www.stormshield.com\/wp-content\/uploads\/candran-indice.jpg\" alt=\"\" width=\"191\" height=\"144\" \/><\/p>\n<p style=\"text-align: center;\"><em>Indice de confiance de l\u2019absence de faux positif<\/em><\/p>\n<\/td>\n<\/tr>\n<\/tbody>\n<\/table>\n<h3>Stormshield Endpoint Security<\/h3>\n<p>Les diff\u00e9rentes versions de SES (7.2 et Evolution) \u00e9tant des solutions de protection de postes et serveurs, elles ne vont pas bloquer l\u2019exploitation de cette vuln\u00e9rabilit\u00e9 directement. Par contre, elles pourront emp\u00eacher le payload de s\u2019ex\u00e9cuter correctement et ainsi \u00e9viter tout impact. Le blocage d\u00e9pendra du payload utilis\u00e9.<\/p>\n<p>Quelle que soit votre version de SES (7.2 ou Evolution), il est n\u00e9anmoins possible d\u2019ajouter une r\u00e8gle d\u2019audit de cr\u00e9ation de fichier *.jsp dans les dossiers du serveur pouvant \u00eatre vuln\u00e9rable \u00e0 Spring4Shell. Ceci vous permettra d\u2019\u00eatre tr\u00e8s rapidement alert\u00e9 si un attaquant venait \u00e0 d\u00e9poser un fichier contenant du code Java via cette attaque.<\/p>\n<h3>Recommandations<\/h3>\n<p>Nous recommandons d\u2019appliquer au plus vite la mise \u00e0 jour <a href=\"https:\/\/spring.io\/blog\/2022\/03\/31\/spring-framework-rce-early-announcement\" target=\"_blank\" rel=\"noopener\">Spring<\/a> en version 5.3.18 and 5.2.20.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Ce mois d&rsquo;avril commence fort avec la d\u00e9couverte d\u2019une nouvelle vuln\u00e9rabilit\u00e9 au score de 9.8 de type RCE (Remote Code Execution) sans aucune authentification pr\u00e9alable dans le framework opensource Java Spring. &nbsp; Le contexte de l&rsquo;attaque Spring4Shell Apr\u00e8s la biblioth\u00e8que Java Log4j, un vuln\u00e9rabilit\u00e9 de&#8230;<\/p>\n","protected":false},"author":72,"featured_media":190179,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"footnotes":""},"categories":[1503],"tags":[4368],"business_size":[],"industry":[],"help_mefind":[],"features":[],"type_security":[],"maintenance":[],"offer":[],"administration_tools":[],"cloud_offers":[],"listing_product":[1565,1530],"class_list":["post-270987","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-alertes","tag-la-cybersecurite-par-stormshield","listing_product-ses-fr","listing_product-sns-fr"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.3 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Spring4Shell : quelles protections avec les solutions Stormshield ?<\/title>\n<meta name=\"description\" content=\"CVE-2022-22965\/Spring4Shell : les protections Stormshield pour faire face \u00e0 une Zero-Day. Une vuln\u00e9rabilit\u00e9 critique au score CVSSv3 de 9.8.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-spring4shell-la-reponse-des-produits-stormshield\/\" \/>\n<meta property=\"og:locale\" content=\"fr_FR\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Spring4Shell : quelles protections avec les solutions Stormshield ?\" \/>\n<meta property=\"og:description\" content=\"CVE-2022-22965\/Spring4Shell : les protections Stormshield pour faire face \u00e0 une Zero-Day. Une vuln\u00e9rabilit\u00e9 critique au score CVSSv3 de 9.8.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-spring4shell-la-reponse-des-produits-stormshield\/\" \/>\n<meta property=\"og:site_name\" content=\"Stormshield\" \/>\n<meta property=\"article:published_time\" content=\"2022-04-02T08:20:35+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2024-05-29T08:00:03+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.stormshield.com\/wp-content\/uploads\/shutterstock_1534485395-scaled.jpg\" \/>\n\t<meta property=\"og:image:width\" content=\"2560\" \/>\n\t<meta property=\"og:image:height\" content=\"1422\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/jpeg\" \/>\n<meta name=\"author\" content=\"Edouard Simpere\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@Stormshield\" \/>\n<meta name=\"twitter:site\" content=\"@Stormshield\" \/>\n<meta name=\"twitter:label1\" content=\"\u00c9crit par\" \/>\n\t<meta name=\"twitter:data1\" content=\"Edouard Simpere\" \/>\n\t<meta name=\"twitter:label2\" content=\"Dur\u00e9e de lecture estim\u00e9e\" \/>\n\t<meta name=\"twitter:data2\" content=\"5 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-spring4shell-la-reponse-des-produits-stormshield\\\/#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-spring4shell-la-reponse-des-produits-stormshield\\\/\"},\"author\":{\"name\":\"Edouard Simpere\",\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/#\\\/schema\\\/person\\\/f2b09771507d722f3084b11a9b22aa53\"},\"headline\":\"Alerte s\u00e9curit\u00e9 Spring4Shell : la r\u00e9ponse des produits Stormshield\",\"datePublished\":\"2022-04-02T08:20:35+00:00\",\"dateModified\":\"2024-05-29T08:00:03+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-spring4shell-la-reponse-des-produits-stormshield\\\/\"},\"wordCount\":791,\"commentCount\":0,\"image\":{\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-spring4shell-la-reponse-des-produits-stormshield\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.stormshield.com\\\/wp-content\\\/uploads\\\/shutterstock_1534485395-scaled.jpg\",\"keywords\":[\"La cybers\u00e9curit\u00e9 - par Stormshield\"],\"articleSection\":[\"Alertes\"],\"inLanguage\":\"fr-FR\"},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-spring4shell-la-reponse-des-produits-stormshield\\\/\",\"url\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-spring4shell-la-reponse-des-produits-stormshield\\\/\",\"name\":\"Spring4Shell : quelles protections avec les solutions Stormshield ?\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-spring4shell-la-reponse-des-produits-stormshield\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-spring4shell-la-reponse-des-produits-stormshield\\\/#primaryimage\"},\"thumbnailUrl\":\"https:\\\/\\\/www.stormshield.com\\\/wp-content\\\/uploads\\\/shutterstock_1534485395-scaled.jpg\",\"datePublished\":\"2022-04-02T08:20:35+00:00\",\"dateModified\":\"2024-05-29T08:00:03+00:00\",\"author\":{\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/#\\\/schema\\\/person\\\/f2b09771507d722f3084b11a9b22aa53\"},\"description\":\"CVE-2022-22965\\\/Spring4Shell : les protections Stormshield pour faire face \u00e0 une Zero-Day. Une vuln\u00e9rabilit\u00e9 critique au score CVSSv3 de 9.8.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-spring4shell-la-reponse-des-produits-stormshield\\\/#breadcrumb\"},\"inLanguage\":\"fr-FR\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-spring4shell-la-reponse-des-produits-stormshield\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"fr-FR\",\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-spring4shell-la-reponse-des-produits-stormshield\\\/#primaryimage\",\"url\":\"https:\\\/\\\/www.stormshield.com\\\/wp-content\\\/uploads\\\/shutterstock_1534485395-scaled.jpg\",\"contentUrl\":\"https:\\\/\\\/www.stormshield.com\\\/wp-content\\\/uploads\\\/shutterstock_1534485395-scaled.jpg\",\"width\":2560,\"height\":1422},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/actus\\\/alerte-securite-spring4shell-la-reponse-des-produits-stormshield\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Alerte s\u00e9curit\u00e9 Spring4Shell : la r\u00e9ponse des produits Stormshield\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/#website\",\"url\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/\",\"name\":\"Stormshield\",\"description\":\"Stormshield\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"fr-FR\"},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/www.stormshield.com\\\/fr\\\/#\\\/schema\\\/person\\\/f2b09771507d722f3084b11a9b22aa53\",\"name\":\"Edouard Simpere\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"fr-FR\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/d21e23df04a1d5fa2e7754ae2fc9c80a1a78001781fe235cfcd44db1f16003e5?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/d21e23df04a1d5fa2e7754ae2fc9c80a1a78001781fe235cfcd44db1f16003e5?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/d21e23df04a1d5fa2e7754ae2fc9c80a1a78001781fe235cfcd44db1f16003e5?s=96&d=mm&r=g\",\"caption\":\"Edouard Simpere\"},\"description\":\"With a strong appetite for dark humor, starred chefs' pastries and the Windows environment, Edouard is a cybersecurity buff, a real one. A living standard of internal mobility at Stormshield, he made his first, second and third steps around the Stormshield Endpoint Security Evolution product, as a developer, architect and technical leader. He then became head of the company's Threat Intelligence team, in charge of researching and maintaining the level of protection of all the company's products.\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Spring4Shell : quelles protections avec les solutions Stormshield ?","description":"CVE-2022-22965\/Spring4Shell : les protections Stormshield pour faire face \u00e0 une Zero-Day. Une vuln\u00e9rabilit\u00e9 critique au score CVSSv3 de 9.8.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-spring4shell-la-reponse-des-produits-stormshield\/","og_locale":"fr_FR","og_type":"article","og_title":"Spring4Shell : quelles protections avec les solutions Stormshield ?","og_description":"CVE-2022-22965\/Spring4Shell : les protections Stormshield pour faire face \u00e0 une Zero-Day. Une vuln\u00e9rabilit\u00e9 critique au score CVSSv3 de 9.8.","og_url":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-spring4shell-la-reponse-des-produits-stormshield\/","og_site_name":"Stormshield","article_published_time":"2022-04-02T08:20:35+00:00","article_modified_time":"2024-05-29T08:00:03+00:00","og_image":[{"width":2560,"height":1422,"url":"https:\/\/www.stormshield.com\/wp-content\/uploads\/shutterstock_1534485395-scaled.jpg","type":"image\/jpeg"}],"author":"Edouard Simpere","twitter_card":"summary_large_image","twitter_creator":"@Stormshield","twitter_site":"@Stormshield","twitter_misc":{"\u00c9crit par":"Edouard Simpere","Dur\u00e9e de lecture estim\u00e9e":"5 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-spring4shell-la-reponse-des-produits-stormshield\/#article","isPartOf":{"@id":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-spring4shell-la-reponse-des-produits-stormshield\/"},"author":{"name":"Edouard Simpere","@id":"https:\/\/www.stormshield.com\/fr\/#\/schema\/person\/f2b09771507d722f3084b11a9b22aa53"},"headline":"Alerte s\u00e9curit\u00e9 Spring4Shell : la r\u00e9ponse des produits Stormshield","datePublished":"2022-04-02T08:20:35+00:00","dateModified":"2024-05-29T08:00:03+00:00","mainEntityOfPage":{"@id":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-spring4shell-la-reponse-des-produits-stormshield\/"},"wordCount":791,"commentCount":0,"image":{"@id":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-spring4shell-la-reponse-des-produits-stormshield\/#primaryimage"},"thumbnailUrl":"https:\/\/www.stormshield.com\/wp-content\/uploads\/shutterstock_1534485395-scaled.jpg","keywords":["La cybers\u00e9curit\u00e9 - par Stormshield"],"articleSection":["Alertes"],"inLanguage":"fr-FR"},{"@type":"WebPage","@id":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-spring4shell-la-reponse-des-produits-stormshield\/","url":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-spring4shell-la-reponse-des-produits-stormshield\/","name":"Spring4Shell : quelles protections avec les solutions Stormshield ?","isPartOf":{"@id":"https:\/\/www.stormshield.com\/fr\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-spring4shell-la-reponse-des-produits-stormshield\/#primaryimage"},"image":{"@id":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-spring4shell-la-reponse-des-produits-stormshield\/#primaryimage"},"thumbnailUrl":"https:\/\/www.stormshield.com\/wp-content\/uploads\/shutterstock_1534485395-scaled.jpg","datePublished":"2022-04-02T08:20:35+00:00","dateModified":"2024-05-29T08:00:03+00:00","author":{"@id":"https:\/\/www.stormshield.com\/fr\/#\/schema\/person\/f2b09771507d722f3084b11a9b22aa53"},"description":"CVE-2022-22965\/Spring4Shell : les protections Stormshield pour faire face \u00e0 une Zero-Day. Une vuln\u00e9rabilit\u00e9 critique au score CVSSv3 de 9.8.","breadcrumb":{"@id":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-spring4shell-la-reponse-des-produits-stormshield\/#breadcrumb"},"inLanguage":"fr-FR","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-spring4shell-la-reponse-des-produits-stormshield\/"]}]},{"@type":"ImageObject","inLanguage":"fr-FR","@id":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-spring4shell-la-reponse-des-produits-stormshield\/#primaryimage","url":"https:\/\/www.stormshield.com\/wp-content\/uploads\/shutterstock_1534485395-scaled.jpg","contentUrl":"https:\/\/www.stormshield.com\/wp-content\/uploads\/shutterstock_1534485395-scaled.jpg","width":2560,"height":1422},{"@type":"BreadcrumbList","@id":"https:\/\/www.stormshield.com\/fr\/actus\/alerte-securite-spring4shell-la-reponse-des-produits-stormshield\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.stormshield.com\/fr\/"},{"@type":"ListItem","position":2,"name":"Alerte s\u00e9curit\u00e9 Spring4Shell : la r\u00e9ponse des produits Stormshield"}]},{"@type":"WebSite","@id":"https:\/\/www.stormshield.com\/fr\/#website","url":"https:\/\/www.stormshield.com\/fr\/","name":"Stormshield","description":"Stormshield","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.stormshield.com\/fr\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"fr-FR"},{"@type":"Person","@id":"https:\/\/www.stormshield.com\/fr\/#\/schema\/person\/f2b09771507d722f3084b11a9b22aa53","name":"Edouard Simpere","image":{"@type":"ImageObject","inLanguage":"fr-FR","@id":"https:\/\/secure.gravatar.com\/avatar\/d21e23df04a1d5fa2e7754ae2fc9c80a1a78001781fe235cfcd44db1f16003e5?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/d21e23df04a1d5fa2e7754ae2fc9c80a1a78001781fe235cfcd44db1f16003e5?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/d21e23df04a1d5fa2e7754ae2fc9c80a1a78001781fe235cfcd44db1f16003e5?s=96&d=mm&r=g","caption":"Edouard Simpere"},"description":"With a strong appetite for dark humor, starred chefs' pastries and the Windows environment, Edouard is a cybersecurity buff, a real one. A living standard of internal mobility at Stormshield, he made his first, second and third steps around the Stormshield Endpoint Security Evolution product, as a developer, architect and technical leader. He then became head of the company's Threat Intelligence team, in charge of researching and maintaining the level of protection of all the company's products."}]}},"_links":{"self":[{"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/posts\/270987","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/users\/72"}],"replies":[{"embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/comments?post=270987"}],"version-history":[{"count":30,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/posts\/270987\/revisions"}],"predecessor-version":[{"id":524010,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/posts\/270987\/revisions\/524010"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/media\/190179"}],"wp:attachment":[{"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/media?parent=270987"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/categories?post=270987"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/tags?post=270987"},{"taxonomy":"business_size","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/business_size?post=270987"},{"taxonomy":"industry","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/industry?post=270987"},{"taxonomy":"help_mefind","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/help_mefind?post=270987"},{"taxonomy":"features","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/features?post=270987"},{"taxonomy":"type_security","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/type_security?post=270987"},{"taxonomy":"maintenance","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/maintenance?post=270987"},{"taxonomy":"offer","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/offer?post=270987"},{"taxonomy":"administration_tools","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/administration_tools?post=270987"},{"taxonomy":"cloud_offers","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/cloud_offers?post=270987"},{"taxonomy":"listing_product","embeddable":true,"href":"https:\/\/www.stormshield.com\/fr\/wp-json\/wp\/v2\/listing_product?post=270987"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}