CVE-2015-6728
Published Sep 1, 2015
Last updated 8 years ago
Overview
- Description
- The ApiBase::getWatchlistUser function in MediaWiki before 1.23.10, 1.24.x before 1.24.3, and 1.25.x before 1.25.2 does not perform token comparison in constant time, which allows remote attackers to guess the watchlist token and bypass CSRF protection via a timing attack.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 7.5
- Impact score
- 6.4
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:P/A:P
Weaknesses
- nvd@nist.gov
- CWE-352
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:mediawiki:mediawiki:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "05064578-51CC-482B-A135-42522AA50F0A", "versionEndIncluding": "1.23.9" }, { "criteria": "cpe:2.3:a:mediawiki:mediawiki:1.24.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0B21EB21-AE87-48BF-B4A1-5E63A2E116B4" }, { "criteria": "cpe:2.3:a:mediawiki:mediawiki:1.24.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A6C00423-B3FE-485A-9014-22F409DBD377" }, { "criteria": "cpe:2.3:a:mediawiki:mediawiki:1.24.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E90C95FB-71CA-4CA1-935D-58A08244A81F" }, { "criteria": "cpe:2.3:a:mediawiki:mediawiki:1.25.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "9129F374-93CB-43CE-A3B2-DB6483514F32" }, { "criteria": "cpe:2.3:a:mediawiki:mediawiki:1.25.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CE125142-10A2-4ACF-9BA4-44E63C1E5DB6" } ], "operator": "OR" } ] } ]