Description
MediaWiki 1.24.x before 1.24.2, when using PBKDF2 for password hashing, allows remote attackers to cause a denial of service (CPU consumption) via a long password.
Remediation
References
Related Vulnerabilities
TCExam Exposure of Sensitive Information to an Unauthorized Actor Vulnerability (CVE-2020-5743)
Apache HTTP Server CVE-2004-0809 Vulnerability (CVE-2004-0809)
Apache HTTP Server Session Fixation Vulnerability (CVE-2001-1534)
WordPress Plugin GiveWP-Donation and Fundraising Platform Cross-Site Scripting (2.4.6)