Description
The SemanticDrilldown extension for MediaWiki through 1.37.2 (before e688bdba6434591b5dff689a45e4d53459954773) allows SQL injection with certain '-' and '_' constraints.
Remediation
References
Related Vulnerabilities
WordPress 2.0.3 Multiple Unspecified Security Vulnerabilities (2.0 - 2.0.3)
Roundcube Resource Management Errors Vulnerability (CVE-2008-5620)
Apache HTTP Server Resource Management Errors Vulnerability (CVE-2007-6422)
Apache HTTP Server CVE-2013-5704 Vulnerability (CVE-2013-5704)
WordPress Plugin WordPress Backup and Migrate-Backup Guard Arbitrary File Upload (1.5.9)