Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-30153

Опубликовано: 15 апр. 2023
Источник: debian
EPSS Низкий

Описание

An issue was discovered in the VisualEditor extension in MediaWiki before 1.31.13, and 1.32.x through 1.35.x before 1.35.2. . When using VisualEditor to edit a MediaWiki user page belonging to an existing, but hidden, user, VisualEditor will disclose that the user exists. (It shouldn't because they are hidden.) This is related to ApiVisualEditor.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
mediawikifixed1:1.35.2-1package
mediawikinot-affectedbusterpackage
mediawikinot-affectedstretchpackage

Примечания

  • https://phabricator.wikimedia.org/T270453

  • https://lists.wikimedia.org/pipermail/wikitech-l/2021-April/094418.html

EPSS

Процентиль: 40%
0.00184
Низкий

Связанные уязвимости

CVSS3: 4.3
ubuntu
почти 3 года назад

An issue was discovered in the VisualEditor extension in MediaWiki before 1.31.13, and 1.32.x through 1.35.x before 1.35.2. . When using VisualEditor to edit a MediaWiki user page belonging to an existing, but hidden, user, VisualEditor will disclose that the user exists. (It shouldn't because they are hidden.) This is related to ApiVisualEditor.

CVSS3: 4.3
nvd
почти 3 года назад

An issue was discovered in the VisualEditor extension in MediaWiki before 1.31.13, and 1.32.x through 1.35.x before 1.35.2. . When using VisualEditor to edit a MediaWiki user page belonging to an existing, but hidden, user, VisualEditor will disclose that the user exists. (It shouldn't because they are hidden.) This is related to ApiVisualEditor.

CVSS3: 4.3
github
почти 3 года назад

An issue was discovered in the VisualEditor extension in MediaWiki before 1.31.13, and 1.32.x through 1.35.x before 1.35.2. . When using VisualEditor to edit a MediaWiki user page belonging to an existing, but hidden, user, VisualEditor will disclose that the user exists. (It shouldn't because they are hidden.) This is related to ApiVisualEditor.

EPSS

Процентиль: 40%
0.00184
Низкий