CVE-2010-1190
published 2010-03-31CVE-2010-1190: thumb.php in MediaWiki before 1.15.2, when used with access-restriction mechanisms such as img_auth.php, does not check user permissions before providing…
PriorityP423medium4.3CVSS 2.0
AVNACMAuNCPINAN
EPSS
1.43%
70.2th percentile
thumb.php in MediaWiki before 1.15.2, when used with access-restriction mechanisms such as img_auth.php, does not check user permissions before providing scaled images, which allows remote attackers to bypass intended access restrictions and read private images via unspecified manipulations.
Affected
78 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | mediawiki | < mediawiki 1:1.15.2-1 (bookworm) | mediawiki 1:1.15.2-1 (bookworm) |
| mediawiki | mediawiki | <= 1.15.1 | — |
| mediawiki | mediawiki | — | — |
| mediawiki | mediawiki | — | — |
| mediawiki | mediawiki | — | — |
| mediawiki | mediawiki | — | — |
| mediawiki | mediawiki | — | — |
| mediawiki | mediawiki | — | — |
| mediawiki | mediawiki | — | — |
| mediawiki | mediawiki | — | — |
| mediawiki | mediawiki | — | — |
| mediawiki | mediawiki | — | — |
| mediawiki | mediawiki | — | — |
| mediawiki | mediawiki | — | — |
| mediawiki | mediawiki | — | — |
| mediawiki | mediawiki | — | — |
| mediawiki | mediawiki | — | — |
| mediawiki | mediawiki | — | — |
| mediawiki | mediawiki | — | — |
| mediawiki | mediawiki | — | — |
| mediawiki | mediawiki | — | — |
| mediawiki | mediawiki | — | — |
| mediawiki | mediawiki | — | — |
| mediawiki | mediawiki | — | — |
| mediawiki | mediawiki | — | — |
CVSS provenance
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:P/I:N/A:N
osv4.3MEDIUM
vendor_debian4.3LOW
vendor_redhat4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-62v2-6655-wvvj: thumb
ghsa_unreviewed·2022-05-02
CVE-2010-1190 [MEDIUM] GHSA-62v2-6655-wvvj: thumb
thumb.php in MediaWiki before 1.15.2, when used with access-restriction mechanisms such as img_auth.php, does not check user permissions before providing scaled images, which allows remote attackers to bypass intended access restrictions and read private images via unspecified manipulations.
OSV
CVE-2010-1190: thumb
osv·2010-03-31·CVSS 4.3
CVE-2010-1190 [MEDIUM] CVE-2010-1190: thumb
thumb.php in MediaWiki before 1.15.2, when used with access-restriction mechanisms such as img_auth.php, does not check user permissions before providing scaled images, which allows remote attackers to bypass intended access restrictions and read private images via unspecified manipulations.
Red Hat
MediaWiki: Two security fixes in v1.15.2
vendor_redhat·2010-03-08·CVSS 4.3
CVE-2010-1190 [MEDIUM] MediaWiki: Two security fixes in v1.15.2
MediaWiki: Two security fixes in v1.15.2
thumb.php in MediaWiki before 1.15.2, when used with access-restriction mechanisms such as img_auth.php, does not check user permissions before providing scaled images, which allows remote attackers to bypass intended access restrictions and read private images via unspecified manipulations.
Debian
CVE-2010-1190: mediawiki - thumb.php in MediaWiki before 1.15.2, when used with access-restriction mechanis...
vendor_debian·2010·CVSS 4.3
CVE-2010-1190 [MEDIUM] CVE-2010-1190: mediawiki - thumb.php in MediaWiki before 1.15.2, when used with access-restriction mechanis...
thumb.php in MediaWiki before 1.15.2, when used with access-restriction mechanisms such as img_auth.php, does not check user permissions before providing scaled images, which allows remote attackers to bypass intended access restrictions and read private images via unspecified manipulations.
Scope: local
bookworm: resolved (fixed in 1:1.15.2-1)
bullseye: resolved (fixed in 1:1.15.2-1)
forky: resolved (fixed in 1:1.15.2-1)
sid: resolved (fixed in 1:1.15.2-1)
trixie: resolved (fixed in 1:1.15.2-1)
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2010-1150 MediaWiki v.1.15.3: Login CSRF
bugzilla·2010-04-08·CVSS 6.0
CVE-2010-1150 [MEDIUM] CVE-2010-1150 MediaWiki v.1.15.3: Login CSRF
CVE-2010-1150 MediaWiki v.1.15.3: Login CSRF
MediaWiki upstream has released:
[1] http://lists.wikimedia.org/pipermail/mediawiki-announce/2010-April/000090.html
latest, v.1.15.3 version, addressing one cross-site request forgery
(CSRF) issue (from [1]):
"MediaWiki was found to be vulnerable to login CSRF. An attacker who
controls a user account on the target wiki can force the victim to log
in as the attacker, via a script on an external website. If the wiki is
configured to allow user scripts, say with "$wgAllowUserJs = true" in
LocalSettings.php, then the attacker can proceed to mount a
phishing-style attack against the victim to obtain their password."
Upstream bug report:
[2] https://bugzilla.wikimedia.org/show_bug.cgi?id=23076
CVE Request (and reply):
[3] http://www.openwall.com/
Bugzilla
CVE-2010-1189 CVE-2010-1190 MediaWiki: Two security fixes in v1.15.2
bugzilla·2010-03-09·CVSS 5.0
CVE-2010-1189 [MEDIUM] CVE-2010-1189 CVE-2010-1190 MediaWiki: Two security fixes in v1.15.2
CVE-2010-1189 CVE-2010-1190 MediaWiki: Two security fixes in v1.15.2
MediaWiki upstream has released new v1.15.2 version:
http://lists.wikimedia.org/pipermail/mediawiki-announce/2010-March/000088.html
of MediaWiki fixing two security issues (from upstream announcement):
a, "A CSS validation issue was discovered which allows editors to display
external images in wiki pages. This is a privacy concern on public
wikis, since a malicious user may link to an image on a server they
control, which would allow that attacker to gather IP addresses and
other information from users of the public wiki. All sites running
publicly-editable MediaWiki installations are advised to upgrade. All
versions of MediaWiki (prior to this one) are affected."
CVE identifier of CVE-2010-1189 has been assigned to t
http://lists.opensuse.org/opensuse-security-announce/2010-04/msg00006.htmlhttp://lists.wikimedia.org/pipermail/mediawiki-announce/2010-March/000088.htmlhttp://secunia.com/advisories/39022http://secunia.com/advisories/39656http://svn.wikimedia.org/svnroot/mediawiki/tags/REL1_15_2/phase3/RELEASE-NOTEShttp://www.debian.org/security/2010/dsa-2022http://www.vupen.com/english/advisories/2010/0685http://www.vupen.com/english/advisories/2010/1001http://lists.opensuse.org/opensuse-security-announce/2010-04/msg00006.htmlhttp://lists.wikimedia.org/pipermail/mediawiki-announce/2010-March/000088.htmlhttp://secunia.com/advisories/39022http://secunia.com/advisories/39656http://svn.wikimedia.org/svnroot/mediawiki/tags/REL1_15_2/phase3/RELEASE-NOTEShttp://www.debian.org/security/2010/dsa-2022http://www.vupen.com/english/advisories/2010/0685http://www.vupen.com/english/advisories/2010/1001
2010-03-31
Published