CVE-2017-0367

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
13/04/2018
Last modified:
03/10/2019

Description

Mediawiki before 1.28.1 / 1.27.2 contains an unsafe use of temporary directory, where having LocalisationCache directory default to system tmp directory is insecure.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:mediawiki:mediawiki:*:*:*:*:*:*:*:* 1.27.0 (including) 1.27.2 (excluding)
cpe:2.3:a:mediawiki:mediawiki:*:*:*:*:*:*:*:* 1.28.0 (including) 1.28.1 (excluding)
cpe:2.3:o:debian:debian_linux:7.0:*:*:*:*:*:*:*