Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.809084
Category:Web application abuses
Title:DokuWiki Password Reset Address Spoof And SSRF Vulnerabilities
Summary:DokuWiki is prone to ssrf and password reset address spoof vulnerabilities.
Description:Summary:
DokuWiki is prone to ssrf and password reset address spoof vulnerabilities.

Vulnerability Insight:
Multiple flaws are due to:

- The sendRequest method in HTTPClient Class in file '/inc/HTTPClient.php' has
no way to restrict access to private networks when media file fetching is
enabled.

- '$_SERVER[HTTP_HOST]' is used instead of the baseurl setting as part of the
password-reset URL.

Vulnerability Impact:
Successful exploitation will allow remote
attackers to conduct phishing attacks and to scan port of internal network.

Affected Software/OS:
DokuWiki version 2016-06-26a and older.

Solution:
The vendor sees this issue as a won't fix from
DokuWiki side. Specific deployment hints to mitigate those vulnerabilities are available
in the referenced github issues.

CVSS Score:
4.3

CVSS Vector:
AV:N/AC:M/Au:N/C:N/I:P/A:N

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2016-7964
BugTraq ID: 94245
http://www.securityfocus.com/bid/94245
Common Vulnerability Exposure (CVE) ID: CVE-2016-7965
BugTraq ID: 94237
http://www.securityfocus.com/bid/94237
CopyrightCopyright (C) 2016 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.