Description
Multiple unrestricted file upload vulnerabilities in the (1) twikidraw (action/twikidraw.py) and (2) anywikidraw (action/anywikidraw.py) actions in MoinMoin before 1.9.6 allow remote authenticated users with write permissions to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in an unspecified directory, as exploited in the wild in July 2012.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Github GHSA |
GHSA-m2c4-jgmm-fvq3 | MoinMoin Multiple unrestricted file upload vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-06T21:21:28.522Z
Reserved: 2012-12-06T00:00:00.000Z
Link: CVE-2012-6081
No data.
Status : Deferred
Published: 2013-01-03T01:55:04.483
Modified: 2025-04-11T00:51:21.963
Link: CVE-2012-6081
No data.
OpenCVE Enrichment
No data.
Weaknesses
Github GHSA