CVE-2016-10026

Source
https://nvd.nist.gov/vuln/detail/CVE-2016-10026
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2016-10026.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2016-10026
Downstream
Related
Published
2017-02-13T18:59:00Z
Modified
2025-08-09T20:01:25Z
Severity
  • 7.5 (High) CVSS_V3 - CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:H/A:N CVSS Calculator
Summary
[none]
Details

ikiwiki 3.20161219 does not properly check if a revision changes the access permissions for a page on sites with the git and recentchanges plugins and the CGI interface enabled, which allows remote attackers to revert certain changes by leveraging permissions to change the page before the revision was made.

References

Affected packages