ZeroHour

CVE-2023-29506

PoC ×2
CVSS 3.1
6.1 medium
EPSS
2%p76
Published
()
Modified
Description

XWiki Commons are technical libraries common to several other top level XWiki projects. It was possible to inject some code using the URL of authenticated endpoints. This problem has been patched on XWiki 13.10.11, 14.4.7 and 14.10.

Vendors
xwiki
Products
xwiki
Weakness
CWE-79
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

In the news

No ingested article mentions this CVE yet.