Vulnerability Database
Blog
FAQ
Docs
CVE-2021-45471
See a problem?
Please try reporting it
to the source
first.
Source
https://nvd.nist.gov/vuln/detail/CVE-2021-45471
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2021-45471.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2021-45471
Aliases
BIT-mediawiki-2021-45471
Related
UBUNTU-CVE-2021-45471
Published
2021-12-24T02:15:07Z
Modified
2024-11-26T00:53:30.984250Z
Severity
5.3 (Medium)
CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N
CVSS Calculator
Summary
[none]
Details
In MediaWiki through 1.37, blocked IP addresses are allowed to edit EntitySchema items.
References
https://gerrit.wikimedia.org/r/q/Iac86cf63bd014ef99e83dccfce9b8942e15d2bf9
https://gerrit.wikimedia.org/r/q/Id9af124427bcd1e85301d2140a38bf47bbc5622c
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/Z7JNQA53K675TQBBJPZRAG5ZT6XES3IS/
https://phabricator.wikimedia.org/T296578
Affected packages
Git
/
github.com/wikimedia/mediawiki
Affected ranges
Type
GIT
Repo
https://github.com/wikimedia/mediawiki
Events
Introduced
0
Unknown introduced commit / All previous commits are affected
Last affected
4533777d189c3844688b9ce5604e0b70692935f4
Affected versions
1.*
1.1.0
1.3.0beta1
1.37.0
1.37.0-rc.0
1.37.0-rc.1
1.37.0-rc.2
1.37.1
1.37.2
1.37.3
1.37.4
1.37.5
1.37.6
1.5.0alpha1
1.5.0alpha2
1.5.0beta1
1.5.0beta2
1.5.0beta3
1.5.0beta4
1.6.0
Other
REL1_37
CVE-2021-45471 - OSV