Nom de la faiblesse | Source | |
---|---|---|
Cross-Site Request Forgery (CSRF) The web application does not, or cannot, sufficiently verify whether a request was intentionally provided by the user who sent the request, which could have originated from an unauthorized actor. |
Métriques | Score | Gravité | CVSS Vecteur | Source |
---|---|---|---|---|
V2 | 7.5 | AV:N/AC:L/Au:N/C:P/I:P/A:P | nvd@nist.gov |
Mediawiki>>Mediawiki >> Version To (including) 1.23.9
Mediawiki>>Mediawiki >> Version 1.24.0
Mediawiki>>Mediawiki >> Version 1.24.1
Mediawiki>>Mediawiki >> Version 1.24.2
Mediawiki>>Mediawiki >> Version 1.25.0
Mediawiki>>Mediawiki >> Version 1.25.1