CVE-2010-0667: Infoleak
MoinMoin 1.9 before 1.9.1 does not perform the expected clearing of the sys.argv array in situations where the GATEWAYINTERFACE environment variable is set, which allows remote attackers to obtain sensitive information via unspecified vectors.
Other sources
MoinMoin 1.9 before 1.9.1 does not perform the expected clearing of the sys.argv array in situations where the GATEWAYINTERFACE environment variable is set, which allows remote attackers to obtain sensitive information via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-0667?
CVE-2010-0667 is considered a medium severity vulnerability.
How do I fix CVE-2010-0667?
To fix CVE-2010-0667, upgrade MoinMoin to version 1.9.1 or later.
What software versions are affected by CVE-2010-0667?
CVE-2010-0667 affects MoinMoin versions prior to 1.9.1.
What kind of information can be exposed by CVE-2010-0667?
CVE-2010-0667 may allow remote attackers to obtain sensitive information through unspecified vectors.
Is CVE-2010-0667 related to environment variables?
Yes, CVE-2010-0667 is related to the mishandling of the GATEWAY_INTERFACE environment variable.