5 Medium
CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
NONE
Availability Impact
NONE
AV:N/AC:L/Au:N/C:P/I:N/A:N
0.006 Low
EPSS
Percentile
79.1%
The Special:DeletedContributions page in MediaWiki before 1.23.10, 1.24.x
before 1.24.3, and 1.25.x before 1.25.2 allows remote attackers to
determine if an IP is autoblocked via the “Change block” text.
www.openwall.com/lists/oss-security/2015/08/27
github.com/wikimedia/mediawiki/commit/5faabfa1bbf65536ea36108887040198afcb3c82
launchpad.net/bugs/cve/CVE-2015-6727
nvd.nist.gov/vuln/detail/CVE-2015-6727
phabricator.wikimedia.org/T106893
security-tracker.debian.org/tracker/CVE-2015-6727
www.cve.org/CVERecord?id=CVE-2015-6727