Xwiki

Xwiki

244 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 4.5%
  • Veröffentlicht 08.09.2022 18:15:08
  • Zuletzt bearbeitet 21.11.2024 07:12:22

XWiki Platform Web Templates are templates for XWiki Platform, a generic wiki platform. By passing a template of the distribution wizard to the xpart template, user accounts can be created even when user registration is disabled. This also circumvent...

  • EPSS 0.45%
  • Veröffentlicht 08.09.2022 16:15:08
  • Zuletzt bearbeitet 21.11.2024 07:12:21

XWiki Platform Web Templates are templates for XWiki Platform, a generic wiki platform. Through the suggestion feature, string and list properties of objects the user shouldn't have access to can be accessed in versions prior to 13.10.4 and 14.2. Thi...

Exploit
  • EPSS 1.33%
  • Veröffentlicht 08.09.2022 15:15:07
  • Zuletzt bearbeitet 21.11.2024 07:12:21

XWiki Platform Old Core is a core package for XWiki Platform, a generic wiki platform. Prior to versions 13.1.0.5 and 14.3-rc-1, some resources are missing a check for inactive (not yet activated or disabled) users in XWiki, including the REST servic...

Exploit
  • EPSS 2%
  • Veröffentlicht 07.09.2022 14:15:08
  • Zuletzt bearbeitet 21.11.2024 07:04:02

XWiki Platform Old Core is a core package for XWiki Platform, a generic wiki platform. Starting in versions 11.3.7, 11.0.3, and 12.0RC1, it is possible to exploit a bug in XWikiRights resolution of groups to obtain privilege escalation. More specific...

Exploit
  • EPSS 0.49%
  • Veröffentlicht 07.09.2022 14:15:08
  • Zuletzt bearbeitet 21.11.2024 07:04:02

XWiki Platform Security Parent POM contains the security APIs for XWiki Platform, a generic wiki platform. Starting with version 5.0 and prior to 12.10.11, 13.10.1, and 13.4.6, a bug in the security cache stores rules associated to document Page1.Pag...

  • EPSS 0.83%
  • Veröffentlicht 31.05.2022 17:15:07
  • Zuletzt bearbeitet 21.11.2024 06:58:49

XWiki Platform Filter UI provides a generic user interface to convert from a XWiki Filter input stream to an output stream with settings for each stream. Starting with versions 6.0-milestone-2 and 5.4.4 and prior to versions 12.10.11, 14.0-rc-1, 13.4...

  • EPSS 2.98%
  • Veröffentlicht 25.05.2022 21:15:08
  • Zuletzt bearbeitet 21.11.2024 06:58:48

XWiki Platform Flamingo Theme UI is a tool that allows customization and preview of any Flamingo-based skin. Starting with versions 6.2.4 and 6.3-rc-1, a possible cross-site scripting vector is present in the `FlamingoThemesCode.WebHomeSheet` wiki pa...

  • EPSS 0.83%
  • Veröffentlicht 25.05.2022 21:15:08
  • Zuletzt bearbeitet 21.11.2024 06:58:48

XWiki Platform Wiki UI Main Wiki is a package for managing subwikis. Starting with version 5.3-milestone-2, XWiki Platform Wiki UI Main Wiki contains a possible cross-site scripting vector in the `WikiManager.JoinWiki ` wiki page related to the "requ...

  • EPSS 0.06%
  • Veröffentlicht 25.05.2022 21:15:08
  • Zuletzt bearbeitet 21.11.2024 06:58:48

XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. Starting with version 8.3-rc-1 and prior to versions 12.10.3 and 14.0, one can ask for any file located in the classloader using the template API...

  • EPSS 0.22%
  • Veröffentlicht 06.05.2022 00:15:07
  • Zuletzt bearbeitet 21.11.2024 06:58:36

XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. The XWiki Crypto API will generate X509 certificates signed by default using SHA1 with RSA, which is not considered safe anymore for use in certi...