PT-2005-1588 · Wikimedia · Mediawiki

Published

2005-02-22

·

Updated

2011-03-08

·

CVE-2005-0535

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions MediaWiki versions 1.3.x through 1.3.10 MediaWiki versions 1.4 beta through 1.4 rc1
Description A cross-site request forgery issue allows remote attackers to perform unauthorized actions as authenticated users.
Recommendations For MediaWiki versions 1.3.x through 1.3.10, update to version 1.3.11 or later. For MediaWiki versions 1.4 beta through 1.4 rc1, update to version 1.4 rc1 or later.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2005-0535

Affected Products

Mediawiki