XWiki Change Request Cross-Site Scripting (CVE-2023-45138)

Related Vulnerabilities: CVE-2023-45138  

Check Point Reference: CPAI-2023-1123 Date Published: 23 Nov 2023 Severity: Critical Last Updated: Thursday 23 November, 2023 Source: Industry Reference:CVE-2023-45138
Protection Provided by:

Security Gateway
R81, R80, R77, R75

Who is Vulnerable? XWiki Change Request 0.11 and later, prior to 1.9.2 Vulnerability Description A cross-site scripting vulnerability exists in XWiki Change Request. Successful exploitation of this vulnerability would allow remote attackers to inject arbitrary web script into the affected system.