Vulnerabilities
Vulnerable Software
Foswiki:  >> Foswiki  >> 1.0.10  Security Vulnerabilities
A vulnerability was detected in Foswiki up to 2.1.10. The affected element is an unknown function of the component Changes/Viewfile/Oops. The manipulation results in information disclosure. It is possible to launch the attack remotely. The exploit is now public and may be used. Upgrading to version 2.1.11 is sufficient to fix this issue. The patch is identified as 31aeecb58b64/d8ed86b10e46. Upgrading the affected component is recommended.
CVSS Score
5.3
EPSS Score
0.001
Published
2026-02-21
An issue in the SpreadSheetPlugin component of Foswiki v2.1.7 and below allows attackers to execute a directory traversal.
CVSS Score
7.5
EPSS Score
0.005
Published
2023-08-08
Foswiki before 1.1.8 contains a code injection vulnerability in the MAKETEXT macro.
CVSS Score
9.8
EPSS Score
0.035
Published
2019-11-01
The localization functionality in TWiki before 5.1.3, and Foswiki 1.0.x through 1.0.10 and 1.1.x through 1.1.6, allows remote attackers to cause a denial of service (memory consumption) via a large integer in a %MAKETEXT% macro.
CVSS Score
5.0
EPSS Score
0.733
Published
2013-01-04
Multiple cross-site scripting (XSS) vulnerabilities in JumpBox before 1.1.2 for Foswiki Wiki System allow remote attackers to inject arbitrary web script or HTML via unspecified vectors.
CVSS Score
4.3
EPSS Score
0.003
Published
2010-05-07


Contact Us

Shodan ® - All rights reserved