CVE-2025-66474 (CNNVD-202512-1765)
中文标题:
XWiki Rendering 安全漏洞
英文标题:
XWiki vulnerable to remote code execution through insufficient protection against {{/html}} injection
漏洞描述
中文描述:
XWiki Rendering是XWiki基金会的一个通用渲染系统,它将给定语法(wiki 语法、HTML 等)中的文本输入转换为另一种语法(XHTML 等)。 XWiki Rendering 16.10.9及之前版本、17.0.0-rc-1至17.4.2版本和17.5.0-rc-1至17.5.0版本存在安全漏洞,该漏洞源于html注入保护不足,可能导致远程代码执行。
英文描述:
XWiki Rendering is a generic rendering system that converts textual input in a given syntax (wiki syntax, HTML, etc) into another syntax (XHTML, etc). Versions 16.10.9 and below, 17.0.0-rc-1 through 17.4.2 and 17.5.0-rc-1 through 17.5.0 have insufficient protection against {{/html}} injection, which attackers can exploit through RCE. Any user who can edit their own profile or any other document can execute arbitrary script macros, including Groovy and Python macros, which enable remote code execution as well as unrestricted read and write access to all wiki contents. This issue is fixed in versions 16.10.10, 17.4.3 and 17.6.0-rc-1.
CWE类型:
标签:
受影响产品
| 厂商 | 产品 | 版本 | 版本范围 | 平台 | CPE |
|---|---|---|---|---|---|
| xwiki | xwiki-rendering | < 16.10.10 | - | - |
cpe:2.3:a:xwiki:xwiki-rendering:<_16.10.10:*:*:*:*:*:*:*
|
| xwiki | xwiki-rendering | >= 17.0.0-rc-1, < 17.4.3 | - | - |
cpe:2.3:a:xwiki:xwiki-rendering:>=_17.0.0-rc-1,_<_17.4.3:*:*:*:*:*:*:*
|
| xwiki | xwiki-rendering | >= 17.5.0-rc-1, < 17.6.0-rc-1 | - | - |
cpe:2.3:a:xwiki:xwiki-rendering:>=_17.5.0-rc-1,_<_17.6.0-rc-1:*:*:*:*:*:*:*
|
| xwiki | xwiki-rendering | * | - | - |
cpe:2.3:a:xwiki:xwiki-rendering:*:*:*:*:*:*:*:*
|
| xwiki | xwiki-rendering | 17.5.0 | - | - |
cpe:2.3:a:xwiki:xwiki-rendering:17.5.0:-:*:*:*:*:*:*
|
解决方案
中文解决方案:
英文解决方案:
临时解决方案:
参考链接
cve.org
cve.org
cve.org
cve.org
cve.org
cve.org
cve.org
CVSS评分详情
4.0 (cna)
HIGHCVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
时间信息
利用信息
数据源详情
| 数据源 | 记录ID | 版本 | 提取时间 |
|---|---|---|---|
| CVE | cve_CVE-2025-66474 |
2025-12-12 03:21:00 | 2026-01-12 02:12:25 |
| NVD | nvd_CVE-2025-66474 |
2025-12-20 03:17:03 | 2026-01-12 02:28:04 |
| CNNVD | cnnvd_CNNVD-202512-1765 |
2026-01-11 06:15:06 | 2026-01-12 02:37:59 |
版本与语言
安全公告
变更历史
查看详细变更
- vulnerability_type: 未提取 -> 其他
- cnnvd_id: 未提取 -> CNNVD-202512-1765
- data_sources: ['cve', 'nvd'] -> ['cnnvd', 'cve', 'nvd']
查看详细变更
- affected_products_count: 3 -> 5
- data_sources: ['cve'] -> ['cve', 'nvd']