CVE-2023-40573
Last modified
CVE-2023-40573 is a high-severity vulnerability rated 8.8/10 on the CVSS scale. XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. XWiki supports scheduled jobs that contain Groovy scripts. EPSS estimates a 1.00% chance of exploitation in the next 30 days.
Description
XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. XWiki supports scheduled jobs that contain Groovy scripts. Currently, the job checks the content author of the job for programming right. However, modifying or adding a job script to a document doesn't modify the content author. Together with a CSRF vulnerability in the job scheduler, this can be exploited for remote code execution by an attacker with edit right on the wiki. If the attack is successful, an error log entry with "Job content executed" will be produced. This vulnerability has been patched in XWiki 14.10.9 and 15.4RC1.
Metrics
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Weakness Enumeration
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Xwiki | Xwiki | < 14.10.9 |
| Xwiki | Xwiki | 15.0 |
| Xwiki | Xwiki | 15.1 |
| Xwiki | Xwiki | 15.2 |
| Xwiki | Xwiki | 15.3 |
References
- https://github.com/xwiki/xwiki-platform/security/advisories/GHSA-8xhr-x3v8-rghjPatch, Vendor Advisory
- https://jira.xwiki.org/browse/XWIKI-20852Exploit, Issue Tracking, Patch, Vendor Advisory
- https://github.com/xwiki/xwiki-platform/security/advisories/GHSA-8xhr-x3v8-rghjPatch, Vendor Advisory
- https://jira.xwiki.org/browse/XWIKI-20852Exploit, Issue Tracking, Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2023-40573?
How severe is CVE-2023-40573?
How do I fix CVE-2023-40573?
How Strix Helps
- Uncovering a hidden BOLA in Appsmith's snapshot logicStrix autonomously discovered a BOLA/IDOR vulnerability in Appsmith's snapshot deletion path.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2023
- CVE-2023-40568Rejected reason: GitHub has been informed that the requestor…
- CVE-2023-40569FreeRDP is a free implementation of the Remote Desktop Proto…9.8
- CVE-2023-4057Memory safety bugs present in Firefox 115, Firefox ESR 115.0…9.8
- CVE-2023-40570Datasette is an open source multi-tool for exploring and pub…5.3
- CVE-2023-40571weblogic-framework is a tool for detecting weblogic vulnerab…9.8
- CVE-2023-40572XWiki Platform is a generic wiki platform offering runtime s…8
- CVE-2023-40574FreeRDP is a free implementation of the Remote Desktop Proto…9.8
- CVE-2023-40575FreeRDP is a free implementation of the Remote Desktop Proto…9.1
- CVE-2023-40576FreeRDP is a free implementation of the Remote Desktop Proto…7.5
- CVE-2023-40577Alertmanager handles alerts sent by client applications such…5.4
- CVE-2023-40579OpenFGA is an authorization/permission engine built for deve…6.5
- CVE-2023-4058Memory safety bugs present in Firefox 115. Some of these bug…9.8
Are you affected by CVE-2023-40573?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
