PT-2018-11722 · Mediawiki+1 · Mediawiki+1

Legoktm

·

Published

2018-10-04

·

Updated

2022-05-14

·

CVE-2018-13258

CVSS v3.1

5.3

Medium

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions MediaWiki version 1.31
Description The issue arises from missing .htaccess files in the provided tarball for MediaWiki, which are used to protect certain directories from being web accessible.
Recommendations For MediaWiki version 1.31, update to version 1.31.1 to include the necessary .htaccess files and protect the directories as intended.

Exploit

Fix

Information Disclosure

Improper Access Control

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2019-1337
CVE-2018-13258
GHSA-2C28-7GWV-CPGF

Affected Products

Alt Linux
Mediawiki