Description
MediaWiki user Marco discovered that security checks for file
uploads were not being run when the file was uploaded in chunks
through the API. This option has been available to users who can
upload files since MediaWiki 1.19.
This issue was fixed in MediaWiki v1.20.6 and MediaWiki v1.19.7.
Remediation
Upgrade to the latest version of MediaWiki.
References
Related Vulnerabilities
WordPress Plugin Annonces 'theme.php' Arbitrary File Upload (1.2.0.1)
WordPress Plugin Font Uploader 'font-upload.php' Arbitrary File Upload (1.2.4)
WordPress Plugin PollDeep Arbitrary File Upload (1.2)
WordPress Plugin CYSTEME Finder, the admin files explorer Multiple Vulnerabilities (1.3)
WordPress Plugin Baggage Freight Shipping Australia Arbitrary File Upload (0.1.0)