Vulnerability Details CVE-2008-5687
MediaWiki 1.11, and other versions before 1.13.3, does not properly protect against the download of backups of deleted images, which might allow remote attackers to obtain sensitive information via requests for files in images/deleted/.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.004
EPSS Ranking 62.0%
CVSS Severity
CVSS v2 Score 5.0
Products affected by CVE-2008-5687
-
cpe:2.3:a:mediawiki:mediawiki:1.11
-
cpe:2.3:a:mediawiki:mediawiki:1.11.1
-
cpe:2.3:a:mediawiki:mediawiki:1.11.2
-
cpe:2.3:a:mediawiki:mediawiki:1.12.0
-
cpe:2.3:a:mediawiki:mediawiki:1.12.1
-
cpe:2.3:a:mediawiki:mediawiki:1.12.2
-
cpe:2.3:a:mediawiki:mediawiki:1.12.3
-
cpe:2.3:a:mediawiki:mediawiki:1.13.0
-
cpe:2.3:a:mediawiki:mediawiki:1.13.1
-
cpe:2.3:a:mediawiki:mediawiki:1.13.2