Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

MediaWiki Unspecified HTML Tidy Cross-Site Scripting Vulnerability

MediaWiki is prone to an unspecified cross-site scripting vulnerability. An attacker may leverage these issues to have arbitrary script code executed in the browser of an unsuspecting user. This may facilitate the theft of cookie-based authentication credentials as well as other attacks.

Versions of MediaWiki prior to 1.4.2 are vulnerable.







 

Privacy Statement
Copyright 2009, SecurityFocus