PT-2024-32813 · Mediawiki · Createwiki

Blankeclair

·

Published

2024-10-07

·

Updated

2024-11-14

·

CVE-2024-47781

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions CreateWiki (affected versions not specified)
Description The issue concerns the CreateWiki extension used for requesting and creating wikis, where the name of requested wikis is not properly escaped on the Special:RequestWikiQueue page. This allows a user to insert arbitrary HTML, which can be displayed in the request wiki queue. If a wiki creator encounters the malicious payload, their user session can be exploited to retrieve deleted wiki requests containing private information. Similarly, this can be abused to view sensitive information by those with the ability to suppress requests.
Recommendations To resolve the issue, apply the patch with commit 693a220. As a temporary workaround, consider disabling Javascript and/or preventing access to the vulnerable page Special:RequestWikiQueue until the patch is applied.

Exploit

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2024-47781
GHSA-H527-JH77-5G7J

Affected Products

Createwiki