CVE-2011-0398: Medium severity mediawiki matomo vulnerability
The PiwikCommon::getIP function in Piwik before 1.1 does not properly determine the client IP address, which allows remote attackers to bypass intended geolocation and logging functionality via (1) use of a private (aka RFC 1918) address behind a proxy server or (2) spoofing of the X-Forwarded-For HTTP header.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2011-0398?
CVE-2011-0398 is classified as a medium severity vulnerability due to its potential to allow remote attackers to bypass geolocation and logging features.
How do I fix CVE-2011-0398?
To fix CVE-2011-0398, update your Matomo installation to version 1.1 or later, where the vulnerability has been addressed.
What types of attacks can exploit CVE-2011-0398?
CVE-2011-0398 can be exploited via the use of private IP addresses behind a proxy or through spoofing of the X-Forwarded-For header.
Which versions of Matomo are affected by CVE-2011-0398?
CVE-2011-0398 affects all versions of Matomo prior to 1.1, including versions 0.1 to 1.0.
What functionality can be bypassed due to CVE-2011-0398?
CVE-2011-0398 allows attackers to bypass intended geolocation and logging functionality, potentially compromising user tracking accuracy.