CVSS2
Attack Vector
NETWORK
Attack Complexity
MEDIUM
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
COMPLETE
AV:N/AC:M/Au:N/C:N/I:N/A:C
AI Score
Confidence
High
EPSS
Percentile
91.7%
Multiple serious vulnerabilities have been found in MediaWiki. Malicious users can exploit these vulnerabilities to bypass security restrictions, inject arbitrary code, cause denial of service or obtain sensitive information.
Below is a complete list of vulnerabilities
CVE-2015-2941 warning
CVE-2015-2942 high
CVE-2015-2932 warning
CVE-2015-2931 warning
CVE-2015-2938 warning
CVE-2015-2937 high
CVE-2015-2936 high
CVE-2015-2935 critical
CVE-2015-2939 warning
CVE-2015-2940 high
CVE-2015-2933 warning
CVE-2015-2934 warning
Update to the latest version.
Obtain sensitive information. Exploitation of vulnerabilities with this impact can lead to capturing by abuser information, critical for user or system.
Denial of service. Exploitation of vulnerabilities with this impact can lead to loss of system availability or critical functional fault.
Code injection. Exploitation of vulnerabilities with this impact can lead to changes in target code.
Security bypass. Exploitation of vulnerabilities with this impact can lead to performing actions restricted by current security settings.