Medium
CVSS 5.0
Overview
The ajax_mediadiff function in DokuWiki before 2014-05-05a allows remote attackers to access arbitrary images via a crafted namespace in the ns parameter.
The ajax_mediadiff function in DokuWiki before 2014-05-05a allows remote attacke...
The ajax_mediadiff function in DokuWiki before 2014-05-05a allows remote attackers to access arbitrary images via a crafted namespace in the ns parameter.
This vulnerability is rated 🟡 MEDIUM.
Recommended actions: