Looking for the vulnerability index of Invicti's legacy products?
MediaWiki Permissions, Privileges, and Access Controls Vulnerability (CVE-2015-8004) - Vulnerability Database

MediaWiki Permissions, Privileges, and Access Controls Vulnerability (CVE-2015-8004)

Description

MediaWiki before 1.23.11, 1.24.x before 1.24.4, and 1.25.x before 1.25.3 does not properly restrict access to revisions, which allows remote authenticated users with the viewsuppressed user right to remove revision suppressions via a crafted revisiondelete action, which returns a valid a change form.

References

Related Vulnerabilities