CVE-2015-6733: Medium severity mediawiki vulnerability
Published Sep 1, 2015
·Updated
GeSHi, as used in the SyntaxHighlightGeSHi extension and MediaWiki before 1.23.10, 1.24.x before 1.24.3, and 1.25.x before 1.25.2, allows remote attackers to cause a denial of service (resource consumption) via unspecified vectors.
Affected Software
6 affected components
MediaWiki MediaWiki<=1.23.9
MediaWiki MediaWiki=1.24.0
MediaWiki MediaWiki=1.24.1
MediaWiki MediaWiki=1.24.2
MediaWiki MediaWiki=1.25.0
MediaWiki MediaWiki=1.25.1
Event History
Sep 1, 2015
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-6733?
CVE-2015-6733 is classified as a denial of service vulnerability, which can lead to significant resource consumption.
2
How do I fix CVE-2015-6733?
To address CVE-2015-6733, upgrade to MediaWiki versions 1.23.10, 1.24.3, or 1.25.2 or later.
3
Which versions of MediaWiki are affected by CVE-2015-6733?
CVE-2015-6733 affects MediaWiki versions prior to 1.23.10, 1.24.x before 1.24.3, and 1.25.x before 1.25.2.
4
Can CVE-2015-6733 be exploited remotely?
Yes, CVE-2015-6733 allows remote attackers to exploit the vulnerability and cause a denial of service.
5
What impact does CVE-2015-6733 have on server performance?
CVE-2015-6733 can lead to excessive resource consumption, negatively impacting server performance.