https://bugzilla.wikimedia.org/show_bug.cgi?id=28357

Church of emacs <[email protected]> changed:

           What    |Removed                     |Added
----------------------------------------------------------------------------
                 CC|                            |[email protected]
                   |                            |m

--- Comment #8 from Church of emacs <[email protected]> 2011-04-02 
00:30:58 UTC ---
Not only can users edit pages, it seems that their private information gets
leaked, too.
Steps to reproduce:
1. Reproduce this bug (i.e. "hack mediawiki")
2. Click on "history"
3. Note the IP address of the hacker, time and date

This seems to be a huge privacy vulnerability.

-- 
Configure bugmail: https://bugzilla.wikimedia.org/userprefs.cgi?tab=email
------- You are receiving this mail because: -------
You are the assignee for the bug.
You are watching all bug changes.

_______________________________________________
Wikibugs-l mailing list
[email protected]
https://lists.wikimedia.org/mailman/listinfo/wikibugs-l

Reply via email to