Michael Hamann
75 exploits
Active since Sep 2022
XWiki Platform - Cross-Site Scripting
CVSS 6.1
XWiki WYSIWYG API - Open Redirect
CVSS 6.1
Xwiki < 15.10.13 - Incorrect Authorization
CVSS 3.8
Xwiki < 15.10.12 - Improper Authorization
CVSS 2.7
Xwiki < 15.10.12 - Missing Authorization
CVSS 9.0
XWiki <16.2.0 - Info Disclosure
CVSS 9.0
Xwiki < 16.10.4 - Improper Authorization
CVSS 8.8
XWiki - RCE
CVSS 8.8
Xwiki < 16.4.7 - Remote Code Execution
CVSS 8.0
XWiki - Info Disclosure
CVSS 3.5
XWiki <16.4.6, 16.5.0-rc-1, 16.10.2, 17.0.0-rc-1 - Info Disclosure
CVSS 7.5
XWiki - Code Injection via XClass Definition
CVSS 8.0
Xwiki < 16.4.7 - Incorrect Authorization
CVSS 8.8
Xwiki < 15.10.16 - XSS
CVSS 8.0
XWiki Rendering <14.10 - XSS
CVSS 9.0
XWiki Rendering <13.10.11-14.4.7-14.10 - RCE
CVSS 9.9
XWiki Platform <17.1.0 - Info Disclosure
CVSS 6.5
XWiki Platform <17.1.0 - Info Disclosure
CVSS 6.5
XWiki <9.14 - RCE
Xwiki Full Calendar Macro < 2.4.6 - Information Disclosure
CVSS 5.3
XWiki Platform <16.10.9, <17.0.0-rc-1 to <17.4.1 - XSS
CVSS 6.1
XWiki <17.6.0 - Info Disclosure
CVSS 7.5
XWiki Rendering <17.5.0 - RCE
CVSS 8.8
XWiki Rendering <17.5.0 - RCE
CVSS 8.8
XWiki Platform <17.7.0 - XSS
CVSS 6.1