Show filters
8 Total Results
Displaying 1-8 of 8
Sort by:
Attacker Value
Unknown

CVE-2019-16528

Disclosure Date: March 20, 2020 (last updated February 21, 2025)
An issue was discovered in the AbuseFilter extension for MediaWiki. includes/special/SpecialAbuseLog.php allows attackers to obtain sensitive information, such as deleted/suppressed usernames and summaries, from AbuseLog revision data. This affects REL1_32 and REL1_33.
Attacker Value
Unknown

CVE-2019-18987

Disclosure Date: November 15, 2019 (last updated November 27, 2024)
An issue was discovered in the AbuseFilter extension through 1.34 for MediaWiki. Once a specific abuse filter has (accidentally or otherwise) been made public, its previous versions can be exposed, thus potentially disclosing private or sensitive information within the filter's definition.
Attacker Value
Unknown

CVE-2019-18612

Disclosure Date: October 29, 2019 (last updated November 27, 2024)
An issue was discovered in the AbuseFilter extension through 1.34 for MediaWiki. Previously hidden (restricted) AbuseFilter filters were viewable (or their differences were viewable) to unprivileged users, thus disclosing potentially sensitive information.
Attacker Value
Unknown

CVE-2009-3780

Disclosure Date: October 26, 2009 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in Abuse 5.x before 5.x-2.1 and 6.x before 6.x-1.1-alpha1, a module for Drupal, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
0
Attacker Value
Unknown

CVE-2005-0098

Disclosure Date: March 08, 2005 (last updated February 22, 2025)
Multiple buffer overflows in the SDL port of abuse (abuse-SDL) before 2.00 allow local users to execute arbitrary code via the command line.
0
Attacker Value
Unknown

CVE-2005-0099

Disclosure Date: March 08, 2005 (last updated February 22, 2025)
The SDL port of abuse (abuse-SDL) before 2.00 does not properly drop privileges before creating certain files, which allows local users to create or overwrite arbitrary files.
0
Attacker Value
Unknown

CVE-2002-1253

Disclosure Date: November 12, 2002 (last updated February 22, 2025)
Abuse 2.00 and earlier allows local users to gain privileges via command line arguments that specify alternate Lisp scripts that run at escalated privileges, which can contain functions that execute commands or modify files.
0
Attacker Value
Unknown

CVE-2002-1250

Disclosure Date: November 12, 2002 (last updated February 22, 2025)
Buffer overflow in Abuse 2.00 and earlier allows local users to gain root privileges via a long -net command line argument.
0