[原文]DokuWiki before 2004-10-19 allows remote attackers to access administrative functionality including (1) Mediaselectiondialog, (2) Recent changes, (3) feed, and (4) search, possibly due to the lack of ACL checks.
Dokuwiki contains a flaw that may allow a malicious user to gain unauthorized access to certain funcitions. The issue is due to a failure of the access control list. It is possible that the flaw may allow unauthorized access to functions including recent changes, feed, search, and mediaselectiondialog, resulting in a loss of confidentiality and/or integrity.
Upgrade to version 2004-10-19 or higher, as it has been reported to fix this vulnerability. An upgrade is required as there are no known workarounds.