🛡️ GHSA-946c-f9w6-2c25 — ezpublish-kernel

🟢 CVSS 2.0 — Low ✅ No Known Exploit OSV
2.0
CVSS Score
0 Low4 Medium7 High9 Critical10

Description

Download route allows filename change in eZpublish kernel

Impact

The route used for file downloads allows specifying the name of the downloaded file. This is an unintended side effect of the implementation, and means one could construct download URLs with filenames that have no relation to the actual file, which could lead to misunderstandings and confusion, and possibly other harm. As such it is a low severity vulnerability. It affects all supported versions of Ibexa DXP and eZ Platform, in installations where downloadable files exist.

Patches

The issue is fixed in all supported versions of ezsystems/ezpublish-kernel, see "Patched versions".

An advisory is also published for ezsystems/ezplatform-kernel and ibexa/core, please see those repositories.

Commit: https://github.com/ezsystems/ezpublish-kernel/commit/142152f9bae4c4835713df0bdfe22bc98d03f9a1

Workarounds

None, other than blocking all downloads.

References

https://developers.ibexa.co/security-advisories/ibexa-sa-2023-005-vulnerabilities-in-solr-search-and-file-downloads

Affected software

GHSA-946c-f9w6-2c25 is recorded against 1 package.

  • ezsystems/ezpublish-kernel (from 7.5.0 up to 7.5.31)

Timeline and source

Published on 3 November 2023 and last revised on 4 December 2024. No public exploit is currently recorded for this entry. Record sourced from OSV.

References

github.com (Web)
github.com (Web)
github.com (Package)

Details

Severity LOW
CVSS Score 2.0
CVSS Vector N/A
CWE N/A
Public Exploit ✅ No
Source OSV
Published 2023-11-03
Updated 2026-08-20
Modified 2024-12-04
Fix URL N/A

Affected Packages

Software From version Fixed in
ezsystems/ezpublish-kernel 7.5.0 7.5.31

Free Vulnerability Check

Is your site affected by GHSA-946c-f9w6-2c25?

BotEraser helps you identify potentially vulnerable plugins and themes by checking your installation against GHSA-946c-f9w6-2c25 and other known CVE records.

Scan My Site Free →

No credit card required  ·  Results in minutes

ⓘ Data Notice: The information presented above has been compiled from publicly available internet sources. Boteraser aggregates this data solely for informational purposes and does not independently classify, evaluate, or endorse any findings about the vulnerabilities listed. The accuracy and completeness of this information is the sole responsibility of the original publishers. Boteraser and its operators accept no liability for any decisions made based on this data.

Browse related advisories

All advisoriesGitHub AdvisoryGitHub Advisory Undated