Loading HuntDB...

Security issue: Github repo's wiki publicly editable

None
I
Ian Dunn
Submitted None
Reported by whitehat_hacker

Vulnerability Details

Technical details and impact analysis

Improper Access Control - Generic
Hello Team, Github repo's wiki page is publicly editable. This enables an attacker to edit the wiki pages of the affected repo's. Adding content that may link to malicious code libraries that would be installed and used by developers or information that may mislead users. **POC Links:** https://github.com/iandunn/MU-Migration/wiki https://github.com/iandunn/wp-hammer/wiki https://github.com/iandunn/gutenberg/wiki https://github.com/iandunn/dotfiles/wiki ## Impact This enables an attacker to edit the wiki pages of the affected repo's. Adding content that may link to malicious code libraries that would be installed and used by developers or information that may mislead users. Thank you.

Report Details

Additional information and metadata

State

Closed

Substate

Informative

Submitted

Weakness

Improper Access Control - Generic