CVE-2010-0717
EPSS 0.61%MoinMoin has improper default configuration
Published: 5/2/2022Modified: 12/5/2024
Description
The default configuration of `cfg.packagepages_actions_excluded` in MoinMoin before 1.8.7 does not prevent unsafe package actions, which has unspecified impact and attack vectors.
Affected packages (2)
References (11)
- ADVISORYhttp://secunia.com/advisories/38903
- ADVISORYhttps://nvd.nist.gov/vuln/detail/CVE-2010-0717
- PATCHhttps://github.com/moinwiki/moin
- WEBhttp://hg.moinmo.in/moin/1.8/raw-file/1.8.7/docs/CHANGES
- WEBhttp://moinmo.in/MoinMoinRelease1.8
- WEBhttps://exchange.xforce.ibmcloud.com/vulnerabilities/56595
- WEBhttps://github.com/pypa/advisory-database/tree/main/vulns/moin/PYSEC-2010-3.yaml
- WEBhttps://web.archive.org/web/20140807024009/http://secunia.com/advisories/38903
- WEBhttp://www.debian.org/security/2010/dsa-2014
- WEBhttp://www.openwall.com/lists/oss-security/2010/02/15/2
- WEBhttp://www.vupen.com/english/advisories/2010/0600