WSO2 IDS Content Spoofing via URL Params
CVE-2024-6429 Published on September 23, 2025
Content Spoofing in Multiple WSO2 Products via Error Message Injection
A content spoofing vulnerability exists in multiple WSO2 products due to improper error message handling. Under certain conditions, error messages are passed through URL parameters without validation, allowing malicious actors to inject arbitrary content into the UI.
By exploiting this vulnerability, attackers can manipulate browser-displayed error messages, enabling social engineering attacks through deceptive or misleading content.
Vulnerability Analysis
CVE-2024-6429 can be exploited with network access, requires user interaction. This vulnerability is considered to have a low attack complexity. The potential impact of an exploit of this vulnerability is considered to have no impact on confidentiality, with no impact on integrity, and no impact on availability.
Weakness Type
User Interface (UI) Misrepresentation of Critical Information
The user interface (UI) does not properly represent critical information to the user, allowing the information - or its source - to be obscured or spoofed. This is often a component in phishing attacks.
Products Associated with CVE-2024-6429
Want to know whenever a new CVE is published for Wso2 products? stack.watch will email you.
Affected Versions
WSO2 Identity Server as Key Manager:- Version 5.10.0 and below 5.10.0.338 is affected.
- Before 3.2.0 is unknown.
- Version 3.2.0 and below 3.2.0.409 is affected.
- Version 3.2.1 and below 3.2.1.33 is affected.
- Version 4.0.0 and below 4.0.0.327 is affected.
- Version 4.1.0 and below 4.1.0.188 is affected.
- Version 4.2.0 and below 4.2.0.128 is affected.
- Version 4.3.0 and below 4.3.0.38 is affected.
- Version 4.4.0 and below 4.4.0.4 is affected.
- Before 5.10.0 is unknown.
- Version 5.10.0 and below 5.10.0.314 is affected.
- Version 5.11.0 and below 5.11.0.359 is affected.
- Version 6.0.0 and below 6.0.0.203 is affected.
- Version 6.1.0 and below 6.1.0.176 is affected.
- Version 7.0.0 and below 7.0.0.48 is affected.
Exploit Probability
EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.