CVE-2019-12467
10.07.2019, 15:15
MediaWiki through 1.32.1 has Incorrect Access Control (issue 1 of 3). A spammer can use Special:ChangeEmail to send out spam with no rate limiting or ability to block them. Fixed in 1.32.2, 1.31.2, 1.30.2 and 1.27.6.Enginsight
Vendor | Product | Version |
---|---|---|
mediawiki | mediawiki | 𝑥 < 1.27.6 |
mediawiki | mediawiki | 1.30.0 ≤ 𝑥 < 1.30.2 |
mediawiki | mediawiki | 1.31.0 ≤ 𝑥 < 1.31.2 |
mediawiki | mediawiki | 1.32.0 ≤ 𝑥 < 1.32.2 |
debian | debian_linux | 9.0 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
mediawiki |
|
References