Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4wc6-hqv9-qc97

Опубликовано: 20 июн. 2023
Источник: github
Github: Прошло ревью
CVSS3: 9

Описание

XWiki Platform vulnerable to stored cross-site scripting in ClassEditSheet page via name parameters

Impact

A stored XSS can be exploited by users with edit rights by adding a AppWithinMinutes.FormFieldCategoryClass class on a page and setting the payload on the page title. Then, any user visiting /xwiki/bin/view/AppWithinMinutes/ClassEditSheet executes the payload.

See https://jira.xwiki.org/browse/XWIKI-20365 for me details.

Patches

The issue has been patched on XWiki 14.4.8, 14.10.4, and 15.0 ?

Workarounds

The issue can be fixed by updating AppWithinMinutes.ClassEditSheet with this patch.

References

For more information

If you have any questions or comments about this advisory:

Attribution

This vulnerability has been reported on Intigriti by René de Sain @renniepak.

Пакеты

Наименование

org.xwiki.platform:xwiki-platform-appwithinminutes-ui

maven
Затронутые версииВерсия исправления

>= 5.4.4, < 14.4.8

14.4.8

Наименование

org.xwiki.platform:xwiki-platform-appwithinminutes-ui

maven
Затронутые версииВерсия исправления

>= 14.5, < 14.10.4

14.10.4

Наименование

org.xwiki.platform:xwiki-platform-appwithinminutes-ui

maven
Затронутые версииВерсия исправления

>= 15.0-rc-1, < 15.0

15.0

EPSS

Процентиль: 84%
0.02094
Низкий

9 Critical

CVSS3

Дефекты

CWE-79
CWE-80

Связанные уязвимости

CVSS3: 9
nvd
больше 2 лет назад

XWiki Platform is a generic wiki platform. Starting in version 5.4.4 and prior to versions 14.4.8, 14.10.4, and 15.0, a stored cross-site scripting vulnerability can be exploited by users with edit rights by adding a `AppWithinMinutes.FormFieldCategoryClass` class on a page and setting the payload on the page title. Then, any user visiting `/xwiki/bin/view/AppWithinMinutes/ClassEditSheet` executes the payload. The issue has been patched in XWiki 14.4.8, 14.10.4, and 15.0. As a workaround, update `AppWithinMinutes.ClassEditSheet` with a patch.

EPSS

Процентиль: 84%
0.02094
Низкий

9 Critical

CVSS3

Дефекты

CWE-79
CWE-80