Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.100451
Category:Web application abuses
Title:DokuWiki < 2009-12-25b Multiple Vulnerabilities
Summary:DokuWiki is prone to an information disclosure vulnerability and; to multiple security bypass vulnerabilities.
Description:Summary:
DokuWiki is prone to an information disclosure vulnerability and
to multiple security bypass vulnerabilities.

Vulnerability Impact:
Exploiting these issues may allow attackers to determine whether
certain files reside on the affected computer. Information obtained may lead to further attacks.
Unauthenticated attackers can leverage these issues to change or delete wiki permissions.

Affected Software/OS:
These issues affect DokuWiki version 2009-12-25. Other
versions may be vulnerable as well.

Solution:
Reports indicate that updates are available, but Symantec has
not confirmed this information. Please see the references and contact the vendor for details.

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:N/A:N

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2010-0287
11141
http://www.exploit-db.com/exploits/11141
37821
http://www.securityfocus.com/bid/37821
38183
http://secunia.com/advisories/38183
ADV-2010-0150
http://www.vupen.com/english/advisories/2010/0150
DSA-1976
http://www.debian.org/security/2010/dsa-1976
FEDORA-2010-0770
http://lists.fedoraproject.org/pipermail/package-announce/2010-February/034729.html
FEDORA-2010-0800
http://lists.fedoraproject.org/pipermail/package-announce/2010-February/034831.html
GLSA-201301-07
http://security.gentoo.org/glsa/glsa-201301-07.xml
dokuwiki-ajax-dir-traversal(55660)
https://exchange.xforce.ibmcloud.com/vulnerabilities/55660
http://bugs.splitbrain.org/index.php?do=details&task_id=1847
http://www.splitbrain.org/blog/2010-01/17-dokuwiki-security
CopyrightCopyright (C) 2010 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.