Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 4

Количество 4

ubuntu логотип

CVE-2012-1581

почти 14 лет назад

MediaWiki 1.17.x before 1.17.3 and 1.18.x before 1.18.2 uses weak random numbers for password reset tokens, which makes it easier for remote attackers to change the passwords of arbitrary users. Any extension developers using mt_rand() to generate random numbers in contexts where security is required are encouraged to instead make use of the MWCryptRand class introduced with this release.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2012-1581

почти 14 лет назад

MediaWiki 1.17.x before 1.17.3 and 1.18.x before 1.18.2 uses weak random numbers for password reset tokens, which makes it easier for remote attackers to change the passwords of arbitrary users.

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2012-1581

почти 14 лет назад

MediaWiki 1.17.x before 1.17.3 and 1.18.x before 1.18.2 uses weak rand ...

CVSS2: 5
EPSS: Низкий
github логотип

GHSA-fpjv-7xrc-6c45

больше 4 лет назад

MediaWiki 1.17.x before 1.17.3 and 1.18.x before 1.18.2 uses weak random numbers for password reset tokens, which makes it easier for remote attackers to change the passwords of arbitrary users.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2012-1581

MediaWiki 1.17.x before 1.17.3 and 1.18.x before 1.18.2 uses weak random numbers for password reset tokens, which makes it easier for remote attackers to change the passwords of arbitrary users. Any extension developers using mt_rand() to generate random numbers in contexts where security is required are encouraged to instead make use of the MWCryptRand class introduced with this release.

CVSS2: 5
2%
Низкий
почти 14 лет назад
nvd логотип
CVE-2012-1581

MediaWiki 1.17.x before 1.17.3 and 1.18.x before 1.18.2 uses weak random numbers for password reset tokens, which makes it easier for remote attackers to change the passwords of arbitrary users.

CVSS2: 5
2%
Низкий
почти 14 лет назад
debian логотип
CVE-2012-1581

MediaWiki 1.17.x before 1.17.3 and 1.18.x before 1.18.2 uses weak rand ...

CVSS2: 5
2%
Низкий
почти 14 лет назад
github логотип
GHSA-fpjv-7xrc-6c45

MediaWiki 1.17.x before 1.17.3 and 1.18.x before 1.18.2 uses weak random numbers for password reset tokens, which makes it easier for remote attackers to change the passwords of arbitrary users.

2%
Низкий
больше 4 лет назад

Уязвимостей на страницу