First published: Fri Dec 24 2021(Updated: )
In MediaWiki through 1.37, blocked IP addresses are allowed to edit EntitySchema items.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
MediaWiki | <=1.37 | |
Fedora | =35 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-45471 is classified as a medium-severity vulnerability.
To fix CVE-2021-45471, upgrade your MediaWiki installation to version 1.38 or later.
CVE-2021-45471 affects MediaWiki versions up to and including 1.37.
Yes, CVE-2021-45471 affects the Fedora 35 distribution that includes MediaWiki.
CVE-2021-45471 allows blocked IP addresses to edit EntitySchema items, potentially compromising content integrity.