Arbitrary Image Access Vulnerability in DokuWiki before 2014-05-05a

Arbitrary Image Access Vulnerability in DokuWiki before 2014-05-05a

CVE-2014-8761 · MEDIUM Severity

AV:N/AC:L/AU:N/C:P/I:N/A:N

inc/template.php in DokuWiki before 2014-05-05a only checks for access to the root namespace, which allows remote attackers to access arbitrary images via a media file details ajax call.

Learn more about our Web Application Penetration Testing UK.