CVE-2021-31553
22.04.2021, 03:15
An issue was discovered in the CheckUser extension for MediaWiki through 1.35.2. MediaWiki usernames with trailing whitespace could be stored in the cu_log database table such that denial of service occurred for certain CheckUser extension pages and functionality. For example, the attacker could turn off Special:CheckUserLog and thus interfere with usage tracking.Enginsight
Vendor | Product | Version |
---|---|---|
mediawiki | mediawiki | 𝑥 ≤ 1.35.2 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References