CVE-2021-36127

CVE-2021-36127

An issue was discovered in the CentralAuth extension in MediaWiki through 1.36. The Special:GlobalUserRights page provided search results which, for a suppressed MediaWiki user, were different than for any other user, thus easily disclosing suppressed accounts (which are supposed to be completely hidden).

Source: CVE-2021-36127

답글 남기기

이메일 주소는 공개되지 않습니다. 필수 필드는 *로 표시됩니다