CVE-2011-1580
EPSS 0.60%Published: 4/27/2011Modified: 4/28/2026
Also known as:DEBIAN-CVE-2011-1580
Description
The transwiki import functionality in MediaWiki before 1.16.3 does not properly check privileges, which allows remote authenticated users to perform imports from any wgImportSources wiki via a crafted POST request.
Affected packages (1)
- Debian/mediawikifrom 0, < 1:1.15.5-5