Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7jff-vjgp-2fjv

Опубликовано: 30 июн. 2023
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

An issue was discovered in the CheckUserLog API in the CheckUser extension for MediaWiki through 1.39.3. There is incorrect access control for visibility of hidden users.

An issue was discovered in the CheckUserLog API in the CheckUser extension for MediaWiki through 1.39.3. There is incorrect access control for visibility of hidden users.

EPSS

Процентиль: 36%
0.0015
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-863

Связанные уязвимости

CVSS3: 5.3
ubuntu
больше 2 лет назад

An issue was discovered in the CheckUserLog API in the CheckUser extension for MediaWiki through 1.39.3. There is incorrect access control for visibility of hidden users.

CVSS3: 5.3
nvd
больше 2 лет назад

An issue was discovered in the CheckUserLog API in the CheckUser extension for MediaWiki through 1.39.3. There is incorrect access control for visibility of hidden users.

EPSS

Процентиль: 36%
0.0015
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-863