VYPR
Medium severity4.9NVD Advisory· Published Oct 19, 2017· Updated May 13, 2026

CVE-2012-4382

CVE-2012-4382

Description

MediaWiki before 1.18.5, and 1.19.x before 1.19.2 does not properly protect user block metadata, which allows remote administrators to read a user block reason via a reblock attempt.

Affected products

3
  • cpe:2.3:a:mediawiki:mediawiki:*:*:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:mediawiki:mediawiki:*:*:*:*:*:*:*:*range: <=1.18.4
    • cpe:2.3:a:mediawiki:mediawiki:1.19.0:*:*:*:*:*:*:*
    • cpe:2.3:a:mediawiki:mediawiki:1.19.1:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

5

News mentions

0

No linked articles in our index yet.