CVE-2013-1817: Infoleak
Published Nov 20, 2019
·Updated
MediaWiki before 1.19.4 and 1.20.x before 1.20.3 contains an error in the api.php script which allows remote attackers to obtain sensitive information.
Affected Software
7 affected componentsFixes available
MediaWiki MediaWiki<1.19.4
MediaWiki MediaWiki>=1.20.0<1.20.3
Debian Debian Linux=9.0
Debian Debian Linux=10.0
redhat Enterprise Linux=6.0
Fedoraproject Fedora=18
debian/mediawiki
1:1.35.13-1+deb11u21:1.35.13-1+deb11u61:1.39.17-1~deb12u11:1.43.6+dfsg-1~deb13u11:1.43.6+dfsg-2
Event History
Nov 20, 2019
CVE Published
via MITRE·07:32 PM
Data Sourced
via MITRE·07:32 PM
DescriptionWeakness
Feb 18, 2026
Data Sourced
via Debian·03:37 PM
DescriptionAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2013-1817?
CVE-2013-1817 is classified as a medium severity vulnerability due to its potential to expose sensitive information.
2
How do I fix CVE-2013-1817?
To fix CVE-2013-1817, upgrade MediaWiki to version 1.19.4, 1.20.3, or later versions.
3
Who is affected by CVE-2013-1817?
CVE-2013-1817 affects MediaWiki versions before 1.19.4 and between 1.20.0 and 1.20.3.
4
What type of vulnerability is CVE-2013-1817?
CVE-2013-1817 is an information disclosure vulnerability that allows remote attackers to access sensitive data.
5
How does CVE-2013-1817 exploit MediaWiki?
CVE-2013-1817 exploits an error in the api.php script in MediaWiki, allowing unauthorized data retrieval.