Description
Mediawiki 1.31 before 1.31.1 misses .htaccess files in the provided tarball used to protect some directories that shouldn't be web accessible.
Remediation
References
Related Vulnerabilities
WordPress Plugin File Manager Multiple Cross-Site Request Forgery Vulnerabilities (5.0)
Jboss EAP Allocation of Resources Without Limits or Throttling Vulnerability (CVE-2018-10237)
Jboss EAP Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-5629)
Oracle Database Server CVE-2012-1747 Vulnerability (CVE-2012-1747)