CVE-2010-0717Moinmoin vulnerability

CWE-168 documents6 sources
Severity
7.5HIGHNVD
EPSS
0.6%
top 30.64%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedFeb 26
Latest updateMay 2

Description

The default configuration of cfg.packagepages_actions_excluded in MoinMoin before 1.8.7 does not prevent unsafe package actions, which has unspecified impact and attack vectors.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages1 packages

NVDmoinmo/moinmoin1.8.6+24

🔴Vulnerability Details

3
OSV
MoinMoin has improper default configuration2022-05-02
GHSA
MoinMoin has improper default configuration2022-05-02
OSV
CVE-2010-0717: The default configuration of cfg2010-02-26

📋Vendor Advisories

2
Ubuntu
MoinMoin vulnerabilities2010-03-11
Red Hat
Moin: Security fixes in v1.8.7, v1.9.22010-02-01

💬Community

2
Bugzilla
CVE-2010-2487 moin: Multiple XSS issues2010-06-07
Bugzilla
CVE-2010-0668 CVE-2010-0669 CVE-2010-0717 Moin: Security fixes in v1.8.7, v1.9.22010-02-15
CVE-2010-0717 — Moinmo Moinmoin vulnerability | cvebase