CVE-2010-0669
Debian Linux Security Advisory 2014-1
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
0Exploited in Wild
-Decision
Descriptions
MoinMoin before 1.8.7 and 1.9.x before 1.9.2 does not properly sanitize user profiles, which has unspecified impact and attack vectors.
MoinMoin anteriores a v1.8.7 y 1.9.x anteriores a v1.9.2 no sanea de forma adecuada los perfiles de usuario, lo que tiene un impacto y efectos desconocidos.
It was discovered that several wiki actions and preference settings in MoinMoin were not protected from cross-site request forgery (CSRF). If an authenticated user were tricked into visiting a malicious website while logged into MoinMoin, a remote attacker could change the user's configuration or wiki content. It was discovered that MoinMoin did not properly sanitize its input when processing user preferences. An attacker could enter malicious content which when viewed by a user, could render in unexpected ways.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2010-02-21 CVE Reserved
- 2010-02-26 CVE Published
- 2024-08-07 CVE Updated
- 2025-07-30 EPSS Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
- ---------- First Exploit
CWE
CAPEC
References (11)
URL | Tag | Source |
---|---|---|
http://hg.moinmo.in/moin/1.8/raw-file/1.8.7/docs/CHANGES | X_refsource_confirm | |
http://moinmo.in/MoinMoinRelease1.8 | X_refsource_confirm | |
http://secunia.com/advisories/38903 | Third Party Advisory | |
http://www.openwall.com/lists/oss-security/2010/02/15/2 | Mailing List |
|
http://www.openwall.com/lists/oss-security/2010/02/15/4 | Mailing List |
|
http://www.openwall.com/lists/oss-security/2010/02/21/2 | Mailing List |
|
http://www.securityfocus.com/bid/38023 | Vdb Entry | |
http://www.vupen.com/english/advisories/2010/0600 | Vdb Entry |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
URL | Date | SRC |
---|---|---|
http://moinmo.in/SecurityFixes | 2010-03-31 | |
http://secunia.com/advisories/38444 | 2010-03-31 | |
http://www.debian.org/security/2010/dsa-2014 | 2010-03-31 |
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | <= 1.8.6 Search vendor "Moinmo" for product "Moinmoin" and version " <= 1.8.6" | - |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.5.0 Search vendor "Moinmo" for product "Moinmoin" and version "1.5.0" | - |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.5.0 Search vendor "Moinmo" for product "Moinmoin" and version "1.5.0" | beta1 |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.5.0 Search vendor "Moinmo" for product "Moinmoin" and version "1.5.0" | beta2 |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.5.0 Search vendor "Moinmo" for product "Moinmoin" and version "1.5.0" | beta3 |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.5.0 Search vendor "Moinmo" for product "Moinmoin" and version "1.5.0" | beta4 |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.5.0 Search vendor "Moinmo" for product "Moinmoin" and version "1.5.0" | beta5 |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.5.0 Search vendor "Moinmo" for product "Moinmoin" and version "1.5.0" | beta6 |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.5.0 Search vendor "Moinmo" for product "Moinmoin" and version "1.5.0" | rc1 |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.5.1 Search vendor "Moinmo" for product "Moinmoin" and version "1.5.1" | - |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.5.2 Search vendor "Moinmo" for product "Moinmoin" and version "1.5.2" | - |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.5.3 Search vendor "Moinmo" for product "Moinmoin" and version "1.5.3" | - |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.5.3 Search vendor "Moinmo" for product "Moinmoin" and version "1.5.3" | rc1 |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.5.3 Search vendor "Moinmo" for product "Moinmoin" and version "1.5.3" | rc2 |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.5.4 Search vendor "Moinmo" for product "Moinmoin" and version "1.5.4" | - |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.5.5 Search vendor "Moinmo" for product "Moinmoin" and version "1.5.5" | - |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.5.5 Search vendor "Moinmo" for product "Moinmoin" and version "1.5.5" | rc1 |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.5.5a Search vendor "Moinmo" for product "Moinmoin" and version "1.5.5a" | - |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.5.6 Search vendor "Moinmo" for product "Moinmoin" and version "1.5.6" | - |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.5.7 Search vendor "Moinmo" for product "Moinmoin" and version "1.5.7" | - |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.5.8 Search vendor "Moinmo" for product "Moinmoin" and version "1.5.8" | - |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.6.0 Search vendor "Moinmo" for product "Moinmoin" and version "1.6.0" | - |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.6.0 Search vendor "Moinmo" for product "Moinmoin" and version "1.6.0" | beta1 |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.6.0 Search vendor "Moinmo" for product "Moinmoin" and version "1.6.0" | beta2 |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.6.0 Search vendor "Moinmo" for product "Moinmoin" and version "1.6.0" | rc1 |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.6.0 Search vendor "Moinmo" for product "Moinmoin" and version "1.6.0" | rc2 |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.6.1 Search vendor "Moinmo" for product "Moinmoin" and version "1.6.1" | - |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.6.2 Search vendor "Moinmo" for product "Moinmoin" and version "1.6.2" | - |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.6.3 Search vendor "Moinmo" for product "Moinmoin" and version "1.6.3" | - |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.6.4 Search vendor "Moinmo" for product "Moinmoin" and version "1.6.4" | - |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.7.0 Search vendor "Moinmo" for product "Moinmoin" and version "1.7.0" | - |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.7.0 Search vendor "Moinmo" for product "Moinmoin" and version "1.7.0" | beta1 |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.7.0 Search vendor "Moinmo" for product "Moinmoin" and version "1.7.0" | beta2 |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.7.0 Search vendor "Moinmo" for product "Moinmoin" and version "1.7.0" | rc1 |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.7.0 Search vendor "Moinmo" for product "Moinmoin" and version "1.7.0" | rc2 |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.7.0 Search vendor "Moinmo" for product "Moinmoin" and version "1.7.0" | rc3 |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.7.1 Search vendor "Moinmo" for product "Moinmoin" and version "1.7.1" | - |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.7.2 Search vendor "Moinmo" for product "Moinmoin" and version "1.7.2" | - |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.7.3 Search vendor "Moinmo" for product "Moinmoin" and version "1.7.3" | - |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.8.0 Search vendor "Moinmo" for product "Moinmoin" and version "1.8.0" | - |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.8.1 Search vendor "Moinmo" for product "Moinmoin" and version "1.8.1" | - |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.8.2 Search vendor "Moinmo" for product "Moinmoin" and version "1.8.2" | - |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.8.3 Search vendor "Moinmo" for product "Moinmoin" and version "1.8.3" | - |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.8.4 Search vendor "Moinmo" for product "Moinmoin" and version "1.8.4" | - |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.9.0 Search vendor "Moinmo" for product "Moinmoin" and version "1.9.0" | - |
Affected
| ||||||
Moinmo Search vendor "Moinmo" | Moinmoin Search vendor "Moinmo" for product "Moinmoin" | 1.9.1 Search vendor "Moinmo" for product "Moinmoin" and version "1.9.1" | - |
Affected
|