PT-2024-32813 · Mediawiki · Createwiki
Blankeclair
·
Published
2024-10-07
·
Updated
2024-11-14
·
CVE-2024-47781
CVSS v3.1
6.1
Medium
| Vector | AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N |
Name of the Vulnerable Software and Affected Versions
CreateWiki (affected versions not specified)
Description
The issue concerns the CreateWiki extension used for requesting and creating wikis, where the name of requested wikis is not properly escaped on the Special:RequestWikiQueue page. This allows a user to insert arbitrary HTML, which can be displayed in the request wiki queue. If a wiki creator encounters the malicious payload, their user session can be exploited to retrieve deleted wiki requests containing private information. Similarly, this can be abused to view sensitive information by those with the ability to suppress requests.
Recommendations
To resolve the issue, apply the patch with commit
693a220.
As a temporary workaround, consider disabling Javascript and/or preventing access to the vulnerable page Special:RequestWikiQueue until the patch is applied.Exploit
Fix
XSS
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Createwiki