Unspecified vulnerability in Apache Wicket 1.4.x before 1.4.23, 1.5.x before 1.5.11, and 6.x before 6.8.0 allows remote attackers to obtain sensitive information via vectors that cause raw HTML templates to be rendered without being processed and reading the information that is outside of wicket:panel markup.
Advisories
Source ID Title
EUVD EUVD EUVD-2013-2037 Unspecified vulnerability in Apache Wicket 1.4.x before 1.4.23, 1.5.x before 1.5.11, and 6.x before 6.8.0 allows remote attackers to obtain sensitive information via vectors that cause raw HTML templates to be rendered without being processed and reading the information that is outside of wicket:panel markup.
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published:

Updated: 2024-08-06T15:20:37.447Z

Reserved: 2013-02-19T00:00:00

Link: CVE-2013-2055

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2014-02-10T23:55:04.933

Modified: 2025-04-11T00:51:21.963

Link: CVE-2013-2055

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

No data.