CVE-2016-6337
MediaWiki 1.27.x before 1.27.1 might allow remote attackers to bypass intended session access restrictions by leveraging
MediaWiki 1.27.x before 1.27.1 might allow remote attackers to bypass intended session access restrictions by leveraging a call to the UserGetRights function after Session::getAllowedUserRights.
HIGH · CVSS 7.5
EPSS 0.00339
Schedule remediation
- CVSS base score ≥ 7.0
Sigma rules0
YARA rules0