includes/User.php in MediaWiki before 1.16.5, when wgBlockDisablesLogin is enabled, does not clear certain cached data after verification of an auth token fails, which allows remote attackers to bypass authentication by creating crafted wikiUserID and wikiUserName cookies, or by leveraging an unattended workstation.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: redhat

Published: 2011-05-23T22:00:00

Updated: 2011-06-16T09:00:00

Reserved: 2011-04-19T00:00:00


Link: CVE-2011-1766

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2011-05-23T22:55:01.367

Modified: 2011-06-16T02:56:16.823


Link: CVE-2011-1766

JSON object: View

cve-icon Redhat Information

No data.

CWE