Lucene search

K
osvGoogleOSV:CVE-2019-12467
HistoryJul 10, 2019 - 3:15 p.m.

CVE-2019-12467

2019-07-1015:15:12
Google
osv.dev
6

6.6 Medium

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

56.9%

MediaWiki through 1.32.1 has Incorrect Access Control (issue 1 of 3). A spammer can use Special:ChangeEmail to send out spam with no rate limiting or ability to block them. Fixed in 1.32.2, 1.31.2, 1.30.2 and 1.27.6.

CPENameOperatorVersion
mediawikieq1.30.1
mediawikieq1.30.0

6.6 Medium

AI Score

Confidence

Low

0.002 Low

EPSS

Percentile

56.9%