First published: Tue Feb 13 2007(Updated: )
An information leak was discovered in MoinMoin's debug reporting version 1.5.7, which could expose information about the versions of software running on the host system. MoinMoin administrators can add "show_traceback=0" to their site configurations to disable debug tracebacks.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
pip/moin | =1.5.7 | 1.5.8 |
Mastodon | =1.5.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-0902 is considered a moderate severity vulnerability due to its potential for information leakage.
To fix CVE-2007-0902, upgrade your MoinMoin installation from version 1.5.7 to 1.5.8 or higher.
CVE-2007-0902 affects MoinMoin version 1.5.7.
Yes, you can disable the debug tracebacks by adding 'show_traceback=0' to the MoinMoin site configuration.
CVE-2007-0902 is not an ongoing vulnerability but rather a historical one that has been addressed in later software updates.