Description In MediaWiki through 1.37, blocked IP addresses are allowed to edit EntitySchema items. Remediation References CVE-2021-45471 Related Vulnerabilities Zope Web Application Server Other Vulnerability (CVE-2002-0170) Joomla Inadequate Encryption Strength Vulnerability (CVE-2021-23126) WordPress 'paged' Parameter SQL Injection Vulnerability (2.0.2 - 2.0.5) MyBB Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting') Vulnerability (CVE-2016-9419) WordPress Plugin 3D Product configurator for WooCommerce Arbitrary File Upload (1.5.531) Severity Medium Classification CVE-2021-45471 CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N Tags Missing Update Known Vulnerabilities