[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250770

 
 

909

 
 

196157

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

DSA-4767-1 mediawiki -- mediawiki

ID: oval:org.secpod.oval:def:605059Date: (C)2020-09-28   (M)2023-11-13
Class: PATCHFamily: unix




Multiple security issues were discovered in MediaWiki, a website engine for collaborative work: SpecialUserRights could leak whether a user existed or not, multiple code paths lacked HTML sanitisation allowing for cross-site scripting and TOTP validation applied insufficient rate limiting against brute force attempts.

Platform:
Debian 10.x
Product:
mediawiki
Reference:
DSA-4767-1
CVE-2020-15005
CVE-2020-25812
CVE-2020-25813
CVE-2020-25814
CVE-2020-25815
CVE-2020-25827
CVE-2020-25828
CVE    7
CVE-2020-15005
CVE-2020-25815
CVE-2020-25814
CVE-2020-25813
...

© SecPod Technologies