S4E just found a high-severity finding from top 10 tcp port service scan
PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
high·Product Based Web Vulnerabilities·Updated Oct 8, 2024

CVE-2023-50719 Scanner

CVE-2023-50719 Scanner - Information Disclosure vulnerability in XWiki

Est. Time~10 seconds
Scan TypeSingle Scan
Targetsurl
CostFree
2.3k
Times Used
continuous scan runs
5.8k
Continuously Checked
assets under CS
0
Vulnerabilities Found
confirmed findings
References
CVECVE-2023-50719
7.5
CVSShigh
Exploitable remotely over the internet · no authentication required.

XWiki Platform is a generic wiki platform. Starting in 7.2-milestone-2 and prior to versions 14.10.15, 15.5.2, and 15.7-rc-1, the Solr-based search in XWiki discloses the password hashes of all users to anyone with view right on the respective user profiles. By default, all user profiles are public. This vulnerability also affects any configurations used by extensions that contain passwords like API keys that are viewable for the attacker. Normally, such passwords aren't accessible but this vulnerability would disclose them as plain text. This has been patched in XWiki 14.10.15, 15.5.2 and 15.7RC1. There are no known workarounds for this vulnerability.

Attack Vector
Network
Privileges Req.
None
User Interaction
None
Affected
xwiki-platformby xwiki
>= 7.2-milestone-2, < 14.10.15
Updated Aug 22, 2026View on NVD →
Detail

The XWiki software is a generic wiki platform used by organizations for collaborative content creation and management. It is employed by businesses, educational institutions, and communities to facilitate shared knowledge bases and content collaboration. XWiki allows users to create and manage pages, attach files, and have discussions in a centralized environment. The platform is utilized for its extensibility and customization potential, often integrated with various extensions and APIs to enhance its functionality. As a popular open-source solution, XWiki is favored for its flexibility and scalability, catering to small teams and large enterprises alike. Ensuring security within XWiki environments is crucial due to its widespread usage and public accessibility of user profiles by default.

This Information Disclosure vulnerability in XWiki arises due to improper restrictions on Solr-based search functionalities. The vulnerability affects versions up to 14.10.15, allowing anyone with access to view user profiles to access sensitive password hashes. By exploiting this vulnerability, attackers can retrieve password hashes of all users who have public profiles. The flaw also extends to any configurations that may expose other sensitive credentials or secrets. Without appropriate segmentation of user permissions, this vulnerability opens the door to significant security breaches on affected versions. Due to its severe nature, this vulnerability requires immediate attention to safeguard sensitive information.

The vulnerability is a result of inadequate access control on Solr-based searches, which can be leveraged via specific search queries. The queries involved typically focus on "propertyvalue" and "reference" attributes related to user passwords, making it possible to retrieve hash data. In scenarios where password hashes are disclosed, the initial mitigation issues lie in the public default setting of user profiles. Technically, addressing this involves hardening the access controls within the search feature to prevent unauthorized retrieval. The template checks specific HTTP endpoints to identify if these conditions are met, ensuring the presence of the vulnerability.

If exploited, this vulnerability could lead to significant data breaches, allowing attackers to gain unauthorized access to user accounts. With user password hashes exposed, malicious actors could attempt to crack them for gaining complete control over the accounts. The access to sensitive information could also lead to further attacks, including privilege escalation, unauthorized access to sensitive data, and potential service disruptions. In management environments, such breaches could result in operational setbacks, reputational damage, and legal consequences due to failed data protection. Therefore, it is crucial to apply patches to remedy this flaw.

REFERENCES

Solution Advice
  • Ensure that XWiki instances are immediately updated to version 14.10.15, 15.5.2, or 15.7RC1 where this vulnerability has been patched.
  • Review access control settings to limit the visibility of user profiles to only those who require it.
  • Conduct regular security audits to ensure no outdated or vulnerable configurations remain.
  • Implement stringent password management and rotation policies to mitigate potential future disclosures.
  • Educate users about strong password creation to lessen the impact of any potential hashes compromised prior to updates.

Get AI-powered remediation steps tailored to your asset.

Try AI Solutions →

Check your infrastructure.
Right now.

11,000+ scanners. Free to start. No credit card required.