Xwiki

Xwiki

244 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 4.81%
  • Veröffentlicht 25.10.2023 20:15:11
  • Zuletzt bearbeitet 21.11.2024 08:26:24

XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. `org.xwiki.platform:xwiki-platform-web` starting in version 3.1-milestone-1 and prior to 13.4-rc-1, `org.xwiki.platform:xwiki-platform-web-templa...

Exploit
  • EPSS 4.81%
  • Veröffentlicht 25.10.2023 20:15:11
  • Zuletzt bearbeitet 21.11.2024 08:26:24

XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. In `org.xwiki.platform:xwiki-platform-web` versions 7.2-milestone-2 until 14.10.12 and `org.xwiki.platform:xwiki-platform-web-templates` prior to...

Exploit
  • EPSS 10.46%
  • Veröffentlicht 25.10.2023 18:17:28
  • Zuletzt bearbeitet 21.11.2024 08:12:26

XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Starting in version 5.1-rc-1 and prior to versions 14.10.8 and 15.3-rc-1, any user who can edit their own user profile can execute arbitrary scri...

Exploit
  • EPSS 0.57%
  • Veröffentlicht 25.10.2023 18:17:28
  • Zuletzt bearbeitet 21.11.2024 08:12:27

XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Starting with the introduction of attachment move support in version 14.0-rc-1 and prior to versions 14.4.8, 14.10.4, and 15.0-rc-1, an attacker ...

Exploit
  • EPSS 0.34%
  • Veröffentlicht 25.10.2023 18:17:28
  • Zuletzt bearbeitet 21.11.2024 08:12:27

XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Starting in version 9.4-rc-1 and prior to versions 14.10.8 and 15.3-rc-1, when a document has been deleted and re-created, it is possible for use...

Exploit
  • EPSS 3.73%
  • Veröffentlicht 25.10.2023 18:17:28
  • Zuletzt bearbeitet 21.11.2024 08:12:27

XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Starting in version 3.5-milestone-1 and prior to versions 14.10.8 and 15.3-rc-1, triggering the office converter with a specially crafted file na...

  • EPSS 0.1%
  • Veröffentlicht 01.09.2023 20:15:07
  • Zuletzt bearbeitet 21.11.2024 08:20:27

XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. It is possible in XWiki to execute Velocity code without having script right by creating an XClass with a property of type "TextArea" and content...

Exploit
  • EPSS 1.8%
  • Veröffentlicht 24.08.2023 02:15:09
  • Zuletzt bearbeitet 21.11.2024 08:19:44

XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. The create action is vulnerable to a CSRF attack, allowing script and thus remote code execution when targeting a user with script/programming ri...

Exploit
  • EPSS 3.52%
  • Veröffentlicht 24.08.2023 02:15:09
  • Zuletzt bearbeitet 21.11.2024 08:19:44

XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. XWiki supports scheduled jobs that contain Groovy scripts. Currently, the job checks the content author of the job for programming right. However...

  • EPSS 2.11%
  • Veröffentlicht 23.08.2023 21:15:08
  • Zuletzt bearbeitet 21.11.2024 08:18:56

XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Any registered user can use the content field of their user profile page to execute arbitrary scripts with programming rights, thus effectively p...