vulnerability
MediaWiki: Unspecified Security Vulnerability (CVE-2019-12472)
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 5 | (AV:N/AC:L/Au:N/C:N/I:P/A:N) | Jul 10, 2019 | Oct 23, 2019 | May 6, 2022 |
Severity
5
CVSS
(AV:N/AC:L/Au:N/C:N/I:P/A:N)
Published
Jul 10, 2019
Added
Oct 23, 2019
Modified
May 6, 2022
Description
An Incorrect Access Control vulnerability was found in Wikimedia MediaWiki 1.18.0 through 1.32.1. It is possible to bypass the limits on IP range blocks ($wgBlockCIDRLimit) by using the API. Fixed in 1.32.2, 1.31.2, 1.30.2 and 1.27.6.
Solutions
mediawiki-upgrade-1_27_6mediawiki-upgrade-1_30_2mediawiki-upgrade-1_31_2mediawiki-upgrade-1_32_2
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.