CVE

Id
58637  
CVE No.
CVE-2012-5394  
Status
Candidate  
Description
Cross-site request forgery (CSRF) vulnerability in the CentralAuth extension for MediaWiki before 1.19.9, 1.20.x before 1.20.8, and 1.21.x before 1.21.3 allows remote attackers to hijack the authentication of users for requests that login via vectors involving image loading.  
Phase
Assigned (20121017)  
Votes
None (candidate not yet proposed)  
Comments