CVE-2008-1099
MoinMoin Improper Access Control
EPSS 2.0%
Description
`_macro_Getval` in `wikimacro.py` in MoinMoin 1.5.8 and earlier does not properly enforce ACLs, which allows remote attackers to read protected pages. The issue has been fixed on [4a7de0173734](http://hg.moinmo.in/moin/1.5/rev/4a7de0173734).
How to fix CVE-2008-1099
No fixed version has been published yet. Mitigate by removing the affected package or applying upstream guidance from the references below.
Is CVE-2008-1099 being exploited?
Low — EPSS is 2.0%, meaning exploitation activity has not been observed at scale.
Affected packages (2)
- from 0, <= 1.5.8
- from 0, <= 1.5.8