SonicALERT
Search

Sonicwall Signatures

 

Go to All Categories list.


  MediaWiki Language Option Remote Code Execution

Category: WEB-ATTACKS      

Eval injection vulnerability in MediaWiki 1.5.x before 1.5.3 allows remote attackers to execute arbitrary PHP code via the "user language option," which is used as part of a dynamic class name that is processed using the eval function.


Relevant Information