Description
MediaWiki before 1.19.10, 1.2x before 1.21.4, and 1.22.x before 1.22.1 allows remote attackers to obtain information about deleted page via the (1) log API, (2) enhanced RecentChanges, and (3) user watchlists.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-2891-1 | mediawiki security update |
Debian DSA |
DSA-2891-2 | mediawiki regression update |
Debian DSA |
DSA-2891-3 | mediawiki regression update |
EUVD |
EUVD-2013-6276 | MediaWiki before 1.19.10, 1.2x before 1.21.4, and 1.22.x before 1.22.1 allows remote attackers to obtain information about deleted page via the (1) log API, (2) enhanced RecentChanges, and (3) user watchlists. |
References
History
Mon, 14 Jul 2025 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
epss
|
epss
|
Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-06T17:39:01.426Z
Reserved: 2013-11-04T00:00:00.000Z
Link: CVE-2013-6472
No data.
Status : Modified
Published: 2014-05-12T14:55:06.400
Modified: 2026-06-17T00:00:33.210
Link: CVE-2013-6472
No data.
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-200
Exposure of Sensitive Information to an Unauthorized Actor
Debian DSA
EUVD