PT-2021-24243 · Mediawiki+1 · Mediawiki+1
Dylsss
·
Published
2021-12-20
·
Updated
2024-03-06
·
CVE-2021-45471
CVSS v3.1
5.3
Medium
| Vector | AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N |
Name of the Vulnerable Software and Affected Versions:
MediaWiki versions prior to 1.38
Description:
The issue allows blocked IP addresses to edit EntitySchema items. This is a problem in MediaWiki where blocked users can still make changes to certain items.
Recommendations:
For MediaWiki versions prior to 1.38, update to version 1.38 or later to resolve the issue.
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Alt Linux
Mediawiki