CVE-2020-10959
published 2020-06-02CVE-2020-10959: resources/src/mediawiki.page.ready/ready.js in MediaWiki before 1.35 allows remote attackers to force a logout and external redirection via HTML content in a…
PriorityP425medium6.1CVSS 3.1
AVNACLPRNUIRSCCLILAN
EPSS
1.43%
70.2th percentile
resources/src/mediawiki.page.ready/ready.js in MediaWiki before 1.35 allows remote attackers to force a logout and external redirection via HTML content in a MediaWiki page.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | mediawiki | — | — |
| mediawiki | core | >= 0 < 1.34.0-rc.0 | 1.34.0-rc.0 |
| mediawiki | mediawiki | < 1.35 | 1.35 |
CVSS provenance
nvdv3.16.1MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
nvdv2.05.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:N
vendor_debian6.1LOW
vendor_redhat6.1MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Debian
CVE-2020-10959: mediawiki - resources/src/mediawiki.page.ready/ready.js in MediaWiki before 1.35 allows remo...
vendor_debian·2020·CVSS 6.1
CVE-2020-10959 [MEDIUM] CVE-2020-10959: mediawiki - resources/src/mediawiki.page.ready/ready.js in MediaWiki before 1.35 allows remo...
resources/src/mediawiki.page.ready/ready.js in MediaWiki before 1.35 allows remote attackers to force a logout and external redirection via HTML content in a MediaWiki page.
Scope: local
bookworm: resolved
bullseye: resolved
forky: resolved
sid: resolved
trixie: resolved
Red Hat
mediawiki: user content can redirect the logout button to different URL
vendor_redhat·2019-09-14·CVSS 6.1
CVE-2020-10959 [MEDIUM] CWE-601 mediawiki: user content can redirect the logout button to different URL
mediawiki: user content can redirect the logout button to different URL
resources/src/mediawiki.page.ready/ready.js in MediaWiki before 1.35 allows remote attackers to force a logout and external redirection via HTML content in a MediaWiki page.
A flaw was found in MediaWiki, where an attacker can control the MediaWiki logout redirect URL. This flaw allows an attacker with the ability to create wiki pages, to change the logout URL that a user is redirected to when logging out.
Statement: The MediaWiki Ansible playbook has been removed from OpenShift Container Platform in version 4.3 and later.
Package: mediawiki (Red Hat OpenShift Container Platform 3.11) - Will not fix
Package: mediawiki (Red Hat OpenShift Container Platform 4) - Will not fix
GHSA
MediaWiki Open Redirect vulnerability
ghsa·2022-05-24
CVE-2020-10959 [MEDIUM] CWE-601 MediaWiki Open Redirect vulnerability
MediaWiki Open Redirect vulnerability
resources/src/mediawiki.page.ready/ready.js in MediaWiki before 1.34.0-rc.0 allows remote attackers to force a logout and external redirection via HTML content in a MediaWiki page.
OSV
MediaWiki Open Redirect vulnerability
osv·2022-05-24
CVE-2020-10959 [MEDIUM] MediaWiki Open Redirect vulnerability
MediaWiki Open Redirect vulnerability
resources/src/mediawiki.page.ready/ready.js in MediaWiki before 1.34.0-rc.0 allows remote attackers to force a logout and external redirection via HTML content in a MediaWiki page.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2020-10959 mediawiki: user content can redirect the logout button to different URL [fedora-all]
bugzilla·2020-04-20·CVSS 6.1
CVE-2020-10959 [MEDIUM] CVE-2020-10959 mediawiki: user content can redirect the logout button to different URL [fedora-all]
CVE-2020-10959 mediawiki: user content can redirect the logout button to different URL [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected versions
of fedora-all.
For comments that are specific to the vulnerability please use bugs filed
against the "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When submitting as an update, use the fedpkg template provided in the next
comment(s). This will include the bug IDs of this tracking bug as well as
the relevant top-level CVE bugs.
Please also mention the CVE IDs being fixed in the RPM changelog and the
fedpkg commit message.
NOTE: this issue affects multi
Bugzilla
CVE-2020-10959 mediawiki: user content can redirect the logout button to different URL
bugzilla·2020-04-20·CVSS 6.1
CVE-2020-10959 [MEDIUM] CVE-2020-10959 mediawiki: user content can redirect the logout button to different URL
CVE-2020-10959 mediawiki: user content can redirect the logout button to different URL
User content can redirect the logout button to different URL.
Reference:
https://phabricator.wikimedia.org/T232932
Discussion:
Created mediawiki tracking bugs for this issue:
Affects: fedora-all [bug 1826080]
---
Release nodes:
https://lists.wikimedia.org/pipermail/wikitech-l/2020-March/093243.html
---
Statement:
The MediaWiki Ansible playbook has been removed from OpenShift Container Platform in version 4.3 and later.
2020-06-02
Published