CVE-2010-1648
08.06.2010, 00:30
Cross-site request forgery (CSRF) vulnerability in the login interface in MediaWiki 1.15 before 1.15.4 and 1.16 before 1.16 beta 3 allows remote attackers to hijack the authentication of users for requests that (1) create accounts or (2) reset passwords, related to the Special:Userlogin form.
Vendor | Product | Version |
---|---|---|
mediawiki | mediawiki | 1.15.0 |
mediawiki | mediawiki | 1.15.0:rc1 |
mediawiki | mediawiki | 1.15.1 |
mediawiki | mediawiki | 1.15.2 |
mediawiki | mediawiki | 1.15.3 |
mediawiki | mediawiki | 1.16.0 |
mediawiki | mediawiki | 1.16.0:beta1 |
mediawiki | mediawiki | 1.16.0:beta2 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration
References