Description
Mediawiki before 1.28.1 / 1.27.2 contains an unsafe use of temporary directory, where having LocalisationCache directory default to system tmp directory is insecure.
Remediation
References
Related Vulnerabilities
WordPress Plugin Aviary Image Editor Add-on For Gravity Forms Arbitrary File Upload (3.0)
PostgreSQL Other Vulnerability (CVE-2002-1397)
Oracle JRE CVE-2013-1480 Vulnerability (CVE-2013-1480)
Sqlite Improper Validation of Array Index Vulnerability (CVE-2022-35737)
Dotclear Permissions, Privileges, and Access Controls Vulnerability (CVE-2016-7903)