Vulnerability Details CVE-2019-18612
An issue was discovered in the AbuseFilter extension through 1.34 for MediaWiki. Previously hidden (restricted) AbuseFilter filters were viewable (or their differences were viewable) to unprivileged users, thus disclosing potentially sensitive information.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 54.2%
CVSS Severity
CVSS v3 Score 5.3
CVSS v2 Score 5.0
Products affected by CVE-2019-18612
-
cpe:2.3:a:mediawiki:abusefilter:1.19
-
cpe:2.3:a:mediawiki:abusefilter:1.20
-
cpe:2.3:a:mediawiki:abusefilter:1.21
-
cpe:2.3:a:mediawiki:abusefilter:1.22
-
cpe:2.3:a:mediawiki:abusefilter:1.23
-
cpe:2.3:a:mediawiki:abusefilter:1.24
-
cpe:2.3:a:mediawiki:abusefilter:1.25
-
cpe:2.3:a:mediawiki:abusefilter:1.26
-
cpe:2.3:a:mediawiki:abusefilter:1.27
-
cpe:2.3:a:mediawiki:abusefilter:1.28
-
cpe:2.3:a:mediawiki:abusefilter:1.29
-
cpe:2.3:a:mediawiki:abusefilter:1.30
-
cpe:2.3:a:mediawiki:abusefilter:1.31
-
cpe:2.3:a:mediawiki:abusefilter:1.32
-
cpe:2.3:a:mediawiki:abusefilter:1.33
-
cpe:2.3:a:mediawiki:abusefilter:1.34