Your submission was sent successfully! Close

CVE-2017-8809

Published: 15 November 2017

api.php in MediaWiki before 1.27.4, 1.28.x before 1.28.3, and 1.29.x before 1.29.2 has a Reflected File Download vulnerability.

Priority

Medium

CVSS 3 base score: 9.8

Status

Package Release Status
mediawiki
Launchpad, Ubuntu, Debian
artful Ignored
(reached end-of-life)
bionic Not vulnerable
(1.27.4-1)
cosmic Not vulnerable
(1.27.4-1)
disco Not vulnerable
(1.27.4-1)
precise Does not exist

trusty Does not exist
(trusty was needed)
upstream
Released (1:1.27.4-1)
xenial Does not exist

zesty Ignored
(reached end-of-life)