CVE-2013-1817: Debian Linux

High severity, CVSS 7.5. EPSS: 2.5% chance of exploitation in the next 30 days.

MediaWiki before 1.19.4 and 1.20.x before 1.20.3 contains an error in the api.php script which allows remote attackers to obtain sensitive information.

Affected products

  • Debian Debian Linux: version 9.0 only; version 10.0 only
  • Fedoraproject Fedora: version 18 only
  • Mediawiki Mediawiki: before 1.19.4 (fixed in 1.19.4); from 1.20.0, before 1.20.3 (fixed in 1.20.3)
  • Red Hat Enterprise Linux: version 6.0 only

Published 2019-11-20. Last modified 2026-06-16.