Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-84581
HistoryNov 01, 2021 - 12:00 a.m.

MediaWiki permission permission and access control issues vulnerability (CNVD-2021-84581)

2021-11-0100:00:00
China National Vulnerability Database
www.cnvd.org.cn
20
mediawiki
vulnerability
permission
access control
security issue
cnvd-2021-84581

EPSS

0.001

Percentile

37.0%

MediaWiki is a free and free-to-use web-based wiki engine from the MediaWiki Foundation in the United States. The product can be used to deploy internal knowledge management and content management systems. Mediawiki is vulnerable to a permission and access control issue, which stems from the application not properly checking permissions when executing jobs. An attacker could use this vulnerability to bypass security checks.