cve/2019/CVE-2019-19709.md
2024-05-26 14:27:05 +02:00

709 B

CVE-2019-19709

Description

MediaWiki through 1.33.1 allows attackers to bypass the Title_blacklist protection mechanism by starting with an arbitrary title, establishing a non-resolvable redirect for the associated page, and using redirect=1 in the action API when editing that page.

POC

Reference

No PoCs from references.

Github