Researcher Orange Tsai disclosed an unauthenticated remote-code-execution chain in an Amazon internal collaboration service built on the Nuxeo Java content-management platform. The attack exploited inconsistent handling of URL path parameters between Nuxeo and Tomcat to bypass authentication, then abused legacy JBoss Seam Expression Language functionality and a blacklist bypass to execute arbitrary commands. Amazon isolated and investigated the affected server after receiving the report; Nuxeo released version 8.10 to address the RCE condition.
The finding reflects a broader class of URL-parser inconsistencies that can undermine application security controls. Differences in URL normalization, DNS resolution, and HTTP-client behavior can permit SSRF filter bypasses and protocol smuggling to internal services, including Redis, Memcached, SMTP, Graphite, and Docker. Organizations should upgrade affected Nuxeo deployments, remove or isolate end-of-life JBoss Seam components, avoid reusing attacker-controlled URLs after validation, and enforce network-layer restrictions that prevent application servers from reaching sensitive internal endpoints.

See affected versions and whether adversaries are exploiting it.
8 events from the most recent confirmed update back to the earliest known activity.
Amazon awarded Orange Tsai a bounty for reporting the unauthenticated remote-code-execution chain affecting its internal collaboration service.
Nuxeo released version 8.10, which patched the RCE condition used in the Amazon collaboration-service exploit chain. The mitigation overrode Seam's vulnerable callAction behavior.
Orange Tsai reported an unauthenticated remote-code-execution chain affecting Amazon's internal collaboration service at collaborate-corp.amazon.com. Amazon acknowledged the report within about 25 minutes, investigated the issue, isolated the affected server, and coordinated with the researcher.
Orange Tsai presented research showing that inconsistent path normalization among web frameworks, reverse proxies, and backend containers can enable directory traversal, ACL bypass, and potential RCE. The research examined vulnerabilities including Spring CVE-2018-1271 and Rails/Sprockets CVE-2018-3760, and demonstrated semicolon path-parameter discrepancies such as `..;` that can bypass proxy routing and access controls.
Researchers described an exploit chain combining a webhook SSRF bypass, SSRF in internal Graphite, Python httplib CR-LF injection, and unsafe Ruby Marshal handling in Memcached. The chain enabled remote code execution on GitHub Enterprise versions earlier than 2.8.7.
cURL 7.54 fixed a parser/requester inconsistency involving malformed userinfo and port syntax, including URLs resembling "http://foo@127.0.0.1:11211@google.com:80/".
PHP 7.0.13 fixed a discrepancy in which validation and request handling could interpret URLs such as "http://127.0.0.1:11211#@google.com:80/" differently, enabling SSRF bypasses.
Orange Tsai presented research showing that inconsistent URL parsers, DNS resolvers, and HTTP client libraries can bypass SSRF defenses and enable access to internal services. The presentation demonstrated techniques including host and port confusion, CR-LF injection, double decoding, IDNA mismatches, and TLS SNI injection.
Vulnerabilities, threat actors, malware, products, organizations, and breaches Mallory has linked to this story.
See whether adversaries are exploiting this yet, and where the affected versions run in your environment.
3 references tracked. Mallory keeps watching after this page renders.
Map indicators from this story to your assets and identify affected systems in minutes.
Every observed campaign, victim, and pivot linked to actors named in this story.
Malware, exploits, and IOCs connected to the activity described here.
YARA, Sigma, and Snort rules deployed to your SIEM as soon as they’re published.
Get matching new stories delivered to your team as they break — not the next morning.
Ask questions about this story and take action on the answers.