CVE-2015-8009

CRITICAL

MediaWiki <1.25.3-1.24.4-1.23.11 - Auth Bypass

Title source: llm
STIX 2.1

Description

The MWOAuthDataStore::lookup_token function in Extension:OAuth for MediaWiki 1.25.x before 1.25.3, 1.24.x before 1.24.4, and before 1.23.11 does not properly validate the signature when checking the authorization signature, which allows remote registered Consumers to use another Consumer's credentials by leveraging knowledge of the credentials.

References (3)

Core 3
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1034028
Exploit, Third Party Advisory x_refsource_confirm
https://phabricator.wikimedia.org/T103023
Mailing List, VDB Entry mailing-list x_refsource_mlist
http://www.openwall.com/lists/oss-security/2015/10/29/14

Scores

CVSS v3 9.8
EPSS 0.0034
EPSS Percentile 57.1%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Details

CWE
CWE-255
Status published
Products (8)
mediawiki/mediawiki 1.24.0
mediawiki/mediawiki 1.24.1
mediawiki/mediawiki 1.24.2
mediawiki/mediawiki 1.24.3
mediawiki/mediawiki 1.25.0
mediawiki/mediawiki 1.25.1
mediawiki/mediawiki 1.25.2
mediawiki/mediawiki < 1.23.10
Published Jul 25, 2017
Tracked Since Feb 18, 2026