CVE-2018-0505

Mediawiki 1.31 before 1.31.1, 1.30.1, 1.29.3 and 1.27.5 contains a flaw where BotPasswords can bypass CentralAuth's account lock
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:mediawiki:mediawiki:*:*:*:*:*:*:*:*
cpe:2.3:a:mediawiki:mediawiki:1.27.5:*:*:*:*:*:*:*
cpe:2.3:a:mediawiki:mediawiki:1.29.3:*:*:*:*:*:*:*
cpe:2.3:a:mediawiki:mediawiki:1.30.1:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*

History

No history.

Information

Published : 2018-10-04 20:29

Updated : 2023-12-10 12:44


NVD link : CVE-2018-0505

Mitre link : CVE-2018-0505

CVE.ORG link : CVE-2018-0505


JSON object : View

Products Affected

debian

  • debian_linux

mediawiki

  • mediawiki
CWE
CWE-287

Improper Authentication