Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
MediaWiki Cross-site Scripting Feb 20 2007 04:29AM
eyal BugSec com
MediaWiki Cross-site Scripting

Vulnerabilities.

Date:
18/02/2007

Vendor:
MediaWiki

Vulnerable versions:
MediaWiki 1.9.2 (latest) and below.

Description:
MediaWiki v1.8.2 and below are vulnerable to plain Cross-site scripting attack by expliting the experimental AJAX features, if enabled (defau...

[ more ]  
 

Privacy Statement
Copyright 2010, SecurityFocus