Ecosyste.ms: Advisories

An open API service providing security vulnerability metadata for many open source software ecosystems.

Security Advisories: GSA_kwCzR0hTQS1oN2N3LTQ0dnAtanE3aM4AAz9y

XWiki Platform vulnerable to privilege escalation (PR) from account through TipsPanel

Impact

It's possible to execute any wiki content with the right of the TipsPanel author by creating a tip UI extension.

To reproduce:

The groovy macro is executed, after the fix you get an error instead.

Patches

This has been patched in XWiki 15.1-rc-1 and 14.10.5.

Workarounds

There are no known workarounds for it.

References

For more information

If you have any questions or comments about this advisory:

Permalink: https://github.com/advisories/GHSA-h7cw-44vp-jq7h
JSON: https://advisories.ecosyste.ms/api/v1/advisories/GSA_kwCzR0hTQS1oN2N3LTQ0dnAtanE3aM4AAz9y
Source: GitHub Advisory Database
Origin: Unspecified
Severity: High
Classification: General
Published: 11 months ago
Updated: 6 months ago


CVSS Score: 8.8
CVSS vector: CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

Identifiers: GHSA-h7cw-44vp-jq7h, CVE-2023-35166
References: Repository: https://github.com/xwiki/xwiki-platform
Blast Radius: 1.0

Affected Packages

maven:org.xwiki.platform:xwiki-platform-help-ui
Affected Version Ranges: >= 15.0-rc-1, < 15.1-rc-1, >= 8.1-milestone-1, < 14.10.5
Fixed in: 15.1-rc-1, 14.10.5