Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2023-1457 | XWiki Platform is a generic wiki platform. Starting in version 3.3-milestone-2 and prior to versions 14.10.4 and 15.0-rc-1, it's possible for a user to execute anything with the right of the author of the XWiki.ClassSheet document. This has been patched in XWiki 15.0-rc-1 and 14.10.4. There are no known workarounds. |
Github GHSA |
GHSA-36fm-j33w-c25f | Privilege escalation (PR)/RCE from account through class sheet |
Tue, 28 Jan 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: GitHub_M
Published:
Updated: 2025-01-28T16:40:09.238Z
Reserved: 2023-05-01T16:47:35.314Z
Link: CVE-2023-32069
Updated: 2024-08-02T15:03:28.816Z
Status : Modified
Published: 2023-05-09T16:15:15.230
Modified: 2024-11-21T08:02:39.053
Link: CVE-2023-32069
No data.
OpenCVE Enrichment
No data.
EUVD
Github GHSA