CVE-2021-44857
published 2021-12-17CVE-2021-44857: An issue was discovered in MediaWiki before 1.35.5, 1.36.x before 1.36.3, and 1.37.x before 1.37.1. It is possible to use action=mcrundo followed by…
PriorityP433medium6.5CVSS 3.1
AVNACLPRLUINSUCNIHAN
EPSS
0.87%
55.2th percentile
An issue was discovered in MediaWiki before 1.35.5, 1.36.x before 1.36.3, and 1.37.x before 1.37.1. It is possible to use action=mcrundo followed by action=mcrrestore to replace the content of any arbitrary page (that the user doesn't have edit rights for). This applies to any public wiki, or a private wiki that has at least one page set in $wgWhitelistRead.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | mediawiki | < mediawiki 1:1.35.5-1 (bookworm) | mediawiki 1:1.35.5-1 (bookworm) |
| mediawiki | mediawiki | < 1.35.5 | 1.35.5 |
| mediawiki | mediawiki | >= 0 < 1:1.35.4-1+deb11u2 | 1:1.35.4-1+deb11u2 |
| mediawiki | mediawiki | >= 0 < 1:1.35.5-1 | 1:1.35.5-1 |
| mediawiki | mediawiki | >= 0 < 1:1.35.5-1 | 1:1.35.5-1 |
| mediawiki | mediawiki | >= 0 < 1:1.35.5-1 | 1:1.35.5-1 |
| mediawiki | mediawiki | >= 1.36.0 < 1.36.3 | 1.36.3 |
| mediawiki | mediawiki | >= 1.37.0 < 1.37.1 | 1.37.1 |
CVSS provenance
nvdv3.16.5MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
nvdv2.04.0MEDIUMAV:N/AC:L/Au:S/C:N/I:P/A:N
osv6.5MEDIUM
vendor_debian6.5MEDIUM
vendor_redhat6.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
mediawiki: information disclosure and manipulation possible under specific conditions
vendor_redhat·2021-12-16·CVSS 6.5
CVE-2021-44857 [MEDIUM] CWE-269 mediawiki: information disclosure and manipulation possible under specific conditions
mediawiki: information disclosure and manipulation possible under specific conditions
An issue was discovered in MediaWiki before 1.35.5, 1.36.x before 1.36.3, and 1.37.x before 1.37.1. It is possible to use action=mcrundo followed by action=mcrrestore to replace the content of any arbitrary page (that the user doesn't have edit rights for). This applies to any public wiki, or a private wiki that has at least one page set in $wgWhitelistRead.
A flaw was found in mediawiki. The "mcrundo" and "mcrrestore" actions (action=mcrundo and action=mcrrestore) did not properly check for editing permissions and allowed an attacker to take the content of any arbitrary revision and save it on any page of their choosing. This affects both public wikis and public pages on private wikis.
Statement: The
Debian
CVE-2021-44857: mediawiki - An issue was discovered in MediaWiki before 1.35.5, 1.36.x before 1.36.3, and 1....
vendor_debian·2021·CVSS 6.5
CVE-2021-44857 [MEDIUM] CVE-2021-44857: mediawiki - An issue was discovered in MediaWiki before 1.35.5, 1.36.x before 1.36.3, and 1....
An issue was discovered in MediaWiki before 1.35.5, 1.36.x before 1.36.3, and 1.37.x before 1.37.1. It is possible to use action=mcrundo followed by action=mcrrestore to replace the content of any arbitrary page (that the user doesn't have edit rights for). This applies to any public wiki, or a private wiki that has at least one page set in $wgWhitelistRead.
Scope: local
bookworm: resolved (fixed in 1:1.35.5-1)
bullseye: resolved (fixed in 1:1.35.4-1+deb11u2)
forky: resolved (fixed in 1:1.35.5-1)
sid: resolved (fixed in 1:1.35.5-1)
trixie: resolved (fixed in 1:1.35.5-1)
GHSA
GHSA-x4wg-g4fv-f8m6: An issue was discovered in MediaWiki before 1
ghsa_unreviewed·2021-12-18
CVE-2021-44857 [MEDIUM] CWE-269 GHSA-x4wg-g4fv-f8m6: An issue was discovered in MediaWiki before 1
An issue was discovered in MediaWiki before 1.35.5, 1.36.x before 1.36.3, and 1.37.x before 1.37.1. It is possible to use action=mcrundo followed by action=mcrrestore to replace the content of any arbitrary page (that the user doesn't have edit rights for). This applies to any public wiki, or a private wiki that has at least one page set in $wgWhitelistRead.
OSV
CVE-2021-44857: An issue was discovered in MediaWiki before 1
osv·2021-12-17·CVSS 6.5
CVE-2021-44857 [MEDIUM] CVE-2021-44857: An issue was discovered in MediaWiki before 1
An issue was discovered in MediaWiki before 1.35.5, 1.36.x before 1.36.3, and 1.37.x before 1.37.1. It is possible to use action=mcrundo followed by action=mcrrestore to replace the content of any arbitrary page (that the user doesn't have edit rights for). This applies to any public wiki, or a private wiki that has at least one page set in $wgWhitelistRead.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2021-12-17
Published