VWE-2018-4352 Printable Version

https://www.vaultwiki.org/pages/Book/Documentation/VWE-2018-4352
This page is a chapter in Info Known Vulnerabilities

This page has been seen 305,551 times.

    • Created by on
      Last updated by on
Common NameNone
VWE-IDVWE-2018-4352
Related Report#5340
SeverityMEDIUM
Exploit DifficultyNORMAL
PlatformAffects all platforms supported by the vulnerable versions.
DescriptionDenial of Service. An unprivileged user may be able to "disappear" certain wiki pages by exploiting moderated edits, rollbacks, and some other actions.
DiscoveredJanuary 19, 2018
ResolvedFebruary 8, 2018
Patches Available4.0.20 Patch Level 3
4.0.19 Patch Level 6
4.0.18 Patch Level 7
4.0.17 Patch Level 9
The versions listed below are known to be affected by this issue. If you are using one of those versions, you should update to a newer release that has no known vulnerabilities.

Notes

After applying the patch, it should be possible to recover any pages that have already been affected by this issue, by using the tool in AdminCP > Wiki > Maintenance > Rebuild Counters / Caches > Rebuild Content URLs.