CVE-2018-25246: Wikipedia 12.0 Denial of Service via Search
Wikipedia 12.0 contains a denial of service vulnerability that allows unauthenticated attackers to crash the application by submitting oversized input through the search functionality. Attackers can paste a large buffer of repeated characters into the search bar to trigger an application crash.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2018-25246?
CVE-2018-25246 is classified as a denial of service vulnerability, allowing attackers to crash the application.
How do I fix CVE-2018-25246?
To mitigate CVE-2018-25246, you should update to a newer version of Wikipedia that resolves this vulnerability.
Who is affected by CVE-2018-25246?
CVE-2018-25246 affects all users of Wikipedia version 12.0.
What type of attack does CVE-2018-25246 involve?
CVE-2018-25246 involves an attack that sends oversized input through the search functionality to crash the application.
Is CVE-2018-25246 exploitable by authenticated users?
No, CVE-2018-25246 can be exploited by unauthenticated attackers.