CVE-2008-5688

MediaWiki <1.13.3 - Info Disclosure

Title source: llm
STIX 2.1

Description

MediaWiki 1.8.1, and other versions before 1.13.3, when the wgShowExceptionDetails variable is enabled, sometimes provides the full installation path in a debugging message, which might allow remote attackers to obtain sensitive information via unspecified requests that trigger an uncaught exception.

References (5)

Core 5
Core References
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/33349

Scores

EPSS 0.0039
EPSS Percentile 60.0%

Details

CWE
CWE-200
Status published
Products (27)
mediawiki/mediawiki 1.8.1
mediawiki/mediawiki 1.8.2
mediawiki/mediawiki 1.8.3
mediawiki/mediawiki 1.8.4
mediawiki/mediawiki 1.8.5
mediawiki/mediawiki 1.9.0
mediawiki/mediawiki 1.9.1
mediawiki/mediawiki 1.9.2
mediawiki/mediawiki 1.9.3
mediawiki/mediawiki 1.9.4
... and 17 more
Published Dec 19, 2008
Tracked Since Feb 18, 2026