CVE Vulnerabilities

CVE-2015-8003

Published: Nov 09, 2015 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.8 MEDIUM
AV:N/AC:L/Au:S/C:N/I:N/A:C
RedHat/V2
RedHat/V3
Ubuntu
LOW
root.io logo minimus.io logo echo.ai logo

MediaWiki before 1.23.11, 1.24.x before 1.24.4, and 1.25.x before 1.25.3 does not throttle file uploads, which allows remote authenticated users to have unspecified impact via multiple file uploads.

Affected Software

NameVendorStart VersionEnd Version
MediawikiMediawiki*1.23.10 (including)
MediawikiMediawiki1.24.0 (including)1.24.0 (including)
MediawikiMediawiki1.24.1 (including)1.24.1 (including)
MediawikiMediawiki1.24.2 (including)1.24.2 (including)
MediawikiMediawiki1.24.3 (including)1.24.3 (including)
MediawikiMediawiki1.25.0 (including)1.25.0 (including)
MediawikiMediawiki1.25.1 (including)1.25.1 (including)
MediawikiMediawiki1.25.2 (including)1.25.2 (including)
MediawikiUbuntuartful*
MediawikiUbuntuprecise*
MediawikiUbuntutrusty*
MediawikiUbuntuupstream*
MediawikiUbuntuvivid*
MediawikiUbuntuwily*
MediawikiUbuntuyakkety*
MediawikiUbuntuzesty*

References