Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Brooke

#49357of 53,624
5Total CVSS
Vulnerabilities · 1
PT-2012-3353
5.0
2012-09-09
Wikimedia · Mediawiki · CVE-2012-1579
**Name of the Vulnerable Software and Affected Versions** MediaWiki versions 1.17.x through 1.17.2 MediaWiki versions 1.18.x through 1.18.1 **Description** The issue concerns the inclusion of private data, such as CSRF tokens, in a JavaScript file by the resource loader. This allows remote attackers to obtain sensitive information. **Recommendations** For MediaWiki versions 1.17.x through 1.17.2, update to version 1.17.3 or later. For MediaWiki versions 1.18.x through 1.18.1, update to version 1.18.2 or later.