DokuWiki before 2006-03-09c enables the debug feature by default, which allows remote attackers to obtain sensitive information by calling doku.php with the X-DOKUWIKI-DO HTTP header set to "debug".
CVSS Details
- CVSS 3.1 Base Score: 7.5
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade dokuwiki | Jul 30, 2024 | Sep 11, 2006 |
| Freebsd | — | Upgrade dokuwikiUpgrade dokuwiki-devel | Dec 10, 2025 | Sep 30, 2006 |
| Gentoo Linux | — | Upgrade www-apps/dokuwiki. | Oct 30, 2017 | Sep 11, 2006 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub