Back to directory
WRITEUP #857

CVE-2023-35150: Arbitrary Code Injection In XWiki.Org XWiki

OtherCode injectionSecurity code review
bySimon Humbert
Program
XWiki
Published
Aug 23, 2023
Added to HackDex
Aug 25, 2023
Read Full Writeuphttps://www.zerodayinitiative.com/blog/2023/8/22/cve-2023-35150-arbitrary-code-injection-in-xwikiorg-xwiki
RELATED WRITEUPS
Spip Preauth RCE 2024: Part 1, The Feather
RCECode injection
Vulnerabilities in NodeJS C/C++ add-on extensions
OtherMemory corruption
Github Actions Exploitation: Dependabot
OtherCI/CD
Oracle Retail Xstore Suite: Pre-authenticated Path Traversal
OtherPath traversal
Hacking Moodle Apps Via External Functions
OtherBroken Access Control

Built with ❤️ by Shubham Rawat