CVE-2004-1405
EPSS 12.0%發布日:2004/12/31修改日:2026/4/28
描述
MediaWiki 1.3.8 and earlier, when used with Apache mod_mime, does not properly handle files with two file extensions, such as .php.rar, which allows remote attackers to upload and execute arbitrary code.
受影響套件(1)
- Debian/mediawikifrom 0, < 1.4.9