CVE Database
/

CVE-2013-6455

Back to search

CVE-2013-6455

Published: Jan 28, 2020

Modified: Aug 6, 2024

PUBLISHED

Description

The CentralAuth extension for MediaWiki before 1.19.10, 1.2x before 1.21.4, and 1.22.x before 1.22.1 allows remote attackers to obtain usernames via vectors related to writing the names to the DOM of a page.

VendorProductVersions

Wikimedia Foundation

MediaWiki

affected
before 1.19.10
affected
1.2x before 1.21.4
affected
1.22.x before 1.22.1

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now