MediaWiki Multiple Security Vulnerabilities

MediaWiki is prone to a cross-site scripting vulnerability, a PRNG seed vulnerability, and multiple cross-site request-forgery vulnerabilities.

An attacker can exploit these issues to perform unauthorized actions in the context of a user's session or execute arbitrary script code in the context of the vulnerable application, potentially allowing the attacker to steal cookie-based authentication credentials.


 

Privacy Statement
Copyright 2010, SecurityFocus