Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2024-21651

XWiki Platform is a generic wiki platform offering runtime services for applications built on top of it. A user able to attach a file to a page can post a malformed TAR file by manipulating file modification times headers, which when parsed by Tika, could cause a denial of service issue via CPU consumption. This vulnerability has been patched in XWiki 14.10.18, 15.5.3 and 15.8 RC1.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.007
EPSS Ranking 70.4%
CVSS Severity
CVSS v3 Score 7.5
Products affected by CVE-2024-21651
  • Xwiki » Xwiki » Version: 14.10
    cpe:2.3:a:xwiki:xwiki:14.10
  • Xwiki » Xwiki » Version: 14.10.1
    cpe:2.3:a:xwiki:xwiki:14.10.1
  • Xwiki » Xwiki » Version: 14.10.10
    cpe:2.3:a:xwiki:xwiki:14.10.10
  • Xwiki » Xwiki » Version: 14.10.11
    cpe:2.3:a:xwiki:xwiki:14.10.11
  • Xwiki » Xwiki » Version: 14.10.12
    cpe:2.3:a:xwiki:xwiki:14.10.12
  • Xwiki » Xwiki » Version: 14.10.13
    cpe:2.3:a:xwiki:xwiki:14.10.13
  • Xwiki » Xwiki » Version: 14.10.14
    cpe:2.3:a:xwiki:xwiki:14.10.14
  • Xwiki » Xwiki » Version: 14.10.15
    cpe:2.3:a:xwiki:xwiki:14.10.15
  • Xwiki » Xwiki » Version: 14.10.16
    cpe:2.3:a:xwiki:xwiki:14.10.16
  • Xwiki » Xwiki » Version: 14.10.17
    cpe:2.3:a:xwiki:xwiki:14.10.17
  • Xwiki » Xwiki » Version: 14.10.2
    cpe:2.3:a:xwiki:xwiki:14.10.2
  • Xwiki » Xwiki » Version: 14.10.3
    cpe:2.3:a:xwiki:xwiki:14.10.3
  • Xwiki » Xwiki » Version: 14.10.4
    cpe:2.3:a:xwiki:xwiki:14.10.4
  • Xwiki » Xwiki » Version: 14.10.5
    cpe:2.3:a:xwiki:xwiki:14.10.5
  • Xwiki » Xwiki » Version: 14.10.6
    cpe:2.3:a:xwiki:xwiki:14.10.6
  • Xwiki » Xwiki » Version: 14.10.7
    cpe:2.3:a:xwiki:xwiki:14.10.7
  • Xwiki » Xwiki » Version: 14.10.8
    cpe:2.3:a:xwiki:xwiki:14.10.8
  • Xwiki » Xwiki » Version: 14.10.9
    cpe:2.3:a:xwiki:xwiki:14.10.9
  • Xwiki » Xwiki » Version: 15.5
    cpe:2.3:a:xwiki:xwiki:15.5
  • Xwiki » Xwiki » Version: 15.5.1
    cpe:2.3:a:xwiki:xwiki:15.5.1
  • Xwiki » Xwiki » Version: 15.5.2
    cpe:2.3:a:xwiki:xwiki:15.5.2
  • Xwiki » Xwiki » Version: 15.6
    cpe:2.3:a:xwiki:xwiki:15.6
  • Xwiki » Xwiki » Version: 15.7
    cpe:2.3:a:xwiki:xwiki:15.7


Contact Us

Shodan ® - All rights reserved