Skip to main content

Configuration

CVE-2010-0717

Severity High
Score 7.5/10

Summary

The default configuration of cfg.packagepages_actions_excluded in MoinMoin in versions 1.8.x before 1.8.7 and 1.9.x before 1.9.2 does not prevent unsafe package actions, which has unspecified impact and attack vectors.

  • LOW
  • NETWORK
  • NONE
  • PARTIAL
  • PARTIAL
  • PARTIAL

CWE-16 - Configuration

Weaknesses in this category are typically introduced during the configuration of the software.

Advisory Timeline

  • Published