The default configuration of cfg.packagepages_actions_excluded in MoinMoin before 1.8.7 does not prevent unsafe package actions, which has unspecified impact and attack vectors.
https://exchange.xforce.ibmcloud.com/vulnerabilities/56595
http://www.vupen.com/english/advisories/2010/0600
http://www.openwall.com/lists/oss-security/2010/02/15/2
http://www.debian.org/security/2010/dsa-2014
http://secunia.com/advisories/38903