CVE-2010-0669: High severity MoinMoin vulnerability
Published Feb 1, 2010
·Updated
MoinMoin before 1.8.7 and 1.9.x before 1.9.2 does not properly sanitize user profiles, which has unspecified impact and attack vectors.
Affected Software
48 affected componentsFixes available
pip/moin>=1.9<1.9.2
1.9.2
pip/moin<1.8.7
1.8.7
MoinMoin<=1.8.6
MoinMoin=1.5.0
MoinMoin=1.5.0-beta1
MoinMoin=1.5.0-beta2
MoinMoin=1.5.0-beta3
MoinMoin=1.5.0-beta4
MoinMoin=1.5.0-beta5
MoinMoin=1.5.0-beta6
MoinMoin=1.5.0-rc1
MoinMoin=1.5.1
MoinMoin=1.5.2
MoinMoin=1.5.3
MoinMoin=1.5.3-rc1
MoinMoin=1.5.3-rc2
MoinMoin=1.5.4
MoinMoin=1.5.5
MoinMoin=1.5.5-rc1
MoinMoin=1.5.5a
MoinMoin=1.5.6
MoinMoin=1.5.7
MoinMoin=1.5.8
MoinMoin=1.6.0
MoinMoin=1.6.0-beta1
MoinMoin=1.6.0-beta2
MoinMoin=1.6.0-rc1
MoinMoin=1.6.0-rc2
MoinMoin=1.6.1
MoinMoin=1.6.2
MoinMoin=1.6.3
MoinMoin=1.6.4
MoinMoin=1.7.0
MoinMoin=1.7.0-beta1
MoinMoin=1.7.0-beta2
MoinMoin=1.7.0-rc1
MoinMoin=1.7.0-rc2
MoinMoin=1.7.0-rc3
MoinMoin=1.7.1
MoinMoin=1.7.2
MoinMoin=1.7.3
MoinMoin=1.8.0
MoinMoin=1.8.1
MoinMoin=1.8.2
MoinMoin=1.8.3
MoinMoin=1.8.4
MoinMoin=1.9.0
MoinMoin=1.9.1
Event History
Feb 1, 2010
CVE Published
via Red Hat·12:00 AM
Data Sourced
via Red Hat·12:00 AM
RemedyDescriptionSeverity
Feb 26, 2010
CVE Published
via MITRE·07:00 PM
Data Sourced
via MITRE·07:00 PM
Description
Data Sourced
via NVD·07:30 PM
DescriptionSeverityAffected Software
May 2, 2022
Advisory Published
via GitHub·06:14 AM
Frequently Asked Questions
1
What is the severity of CVE-2010-0669?
CVE-2010-0669 has unspecified impact and attack vectors due to improper sanitization of user profiles in MoinMoin.
2
How do I fix CVE-2010-0669?
To fix CVE-2010-0669, update MoinMoin to version 1.8.7 or later, or 1.9.2 or later.
3
Which versions are affected by CVE-2010-0669?
CVE-2010-0669 affects MoinMoin versions before 1.8.7 and versions 1.9.x before 1.9.2.
4
What are the implications of not addressing CVE-2010-0669?
Not addressing CVE-2010-0669 could lead to unauthorized access or manipulation of user profiles.
5
Is CVE-2010-0669 a remote vulnerability?
CVE-2010-0669 can be exploited by an attacker with access to the MoinMoin installation, which may include remote attackers.