The search functionality in XWiki 0.9.793 indexes cleartext user passwords, which allows remote malicious users to obtain sensitive information via a search string that matches a password.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
xwiki xwiki 0.9.793 |