CVE-2005-0536
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
02/05/2005
Last modified:
03/04/2025
Description
Directory traversal vulnerability in MediaWiki 1.3.x before 1.3.11 and 1.4 beta before 1.4 rc1 allows remote attackers to delete arbitrary files or determine file existence via a parameter related to image deletion.
Impact
Base Score 2.0
5.00
Severity 2.0
MEDIUM
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:mediawiki:mediawiki:1.3.0:*:*:*:*:*:*:* | ||
cpe:2.3:a:mediawiki:mediawiki:1.3.1:*:*:*:*:*:*:* | ||
cpe:2.3:a:mediawiki:mediawiki:1.3.2:*:*:*:*:*:*:* | ||
cpe:2.3:a:mediawiki:mediawiki:1.3.3:*:*:*:*:*:*:* | ||
cpe:2.3:a:mediawiki:mediawiki:1.3.4:*:*:*:*:*:*:* | ||
cpe:2.3:a:mediawiki:mediawiki:1.3.5:*:*:*:*:*:*:* | ||
cpe:2.3:a:mediawiki:mediawiki:1.3.6:*:*:*:*:*:*:* | ||
cpe:2.3:a:mediawiki:mediawiki:1.3.7:*:*:*:*:*:*:* | ||
cpe:2.3:a:mediawiki:mediawiki:1.3.8:*:*:*:*:*:*:* | ||
cpe:2.3:a:mediawiki:mediawiki:1.3.9:*:*:*:*:*:*:* | ||
cpe:2.3:a:mediawiki:mediawiki:1.3.10:*:*:*:*:*:*:* | ||
cpe:2.3:a:mediawiki:mediawiki:1.4_beta1:*:*:*:*:*:*:* | ||
cpe:2.3:a:mediawiki:mediawiki:1.4_beta2:*:*:*:*:*:*:* | ||
cpe:2.3:a:mediawiki:mediawiki:1.4_beta3:*:*:*:*:*:*:* | ||
cpe:2.3:a:mediawiki:mediawiki:1.4_beta4:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- http://secunia.com/advisories/14360
- http://securitytracker.com/id?1013260=
- http://sourceforge.net/project/shownotes.php?release_id=307067
- http://www.gentoo.org/security/en/glsa/glsa-200502-33.xml
- http://secunia.com/advisories/14360
- http://securitytracker.com/id?1013260=
- http://sourceforge.net/project/shownotes.php?release_id=307067
- http://www.gentoo.org/security/en/glsa/glsa-200502-33.xml