Логотип exploitDog
bind:CVE-2023-29208
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2023-29208

Количество 2

Количество 2

nvd логотип

CVE-2023-29208

почти 3 года назад

XWiki Commons are technical libraries common to several other top level XWiki projects. Rights added to a document are not taken into account for viewing it once it's deleted. Note that this vulnerability only impact deleted documents that where containing view rights: the view rights provided on a space of a deleted document are properly checked. The problem has been patched in XWiki 14.10 by checking the rights of current user: only admin and deleter of the document are allowed to view it.

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-4f8g-fq6x-jqrr

почти 3 года назад

org.xwiki.platform:xwiki-platform-oldcore vulnerable to data leak through deleted documents

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2023-29208

XWiki Commons are technical libraries common to several other top level XWiki projects. Rights added to a document are not taken into account for viewing it once it's deleted. Note that this vulnerability only impact deleted documents that where containing view rights: the view rights provided on a space of a deleted document are properly checked. The problem has been patched in XWiki 14.10 by checking the rights of current user: only admin and deleter of the document are allowed to view it.

CVSS3: 7.5
0%
Низкий
почти 3 года назад
github логотип
GHSA-4f8g-fq6x-jqrr

org.xwiki.platform:xwiki-platform-oldcore vulnerable to data leak through deleted documents

CVSS3: 7.5
0%
Низкий
почти 3 года назад

Уязвимостей на страницу