Page 29 of 283 results (0.009 seconds)

CVSS: 6.1EPSS: 0%CPEs: 17EXPL: 0

24 Apr 2005 — Cross-site scripting (XSS) vulnerability in MediaWiki before 1.4.2, when using HTML Tidy ($wgUseTidy), allows remote attackers to inject arbitrary web script or HTML via unknown vectors. • http://secunia.com/advisories/14993 •

CVSS: 7.5EPSS: 0%CPEs: 17EXPL: 0

24 Feb 2005 — Directory traversal vulnerability in MediaWiki 1.3.x before 1.3.11 and 1.4 beta before 1.4 rc1 allows remote attackers to delete arbitrary files or determine file existence via a parameter related to image deletion. • http://secunia.com/advisories/14360 •

CVSS: 6.1EPSS: 0%CPEs: 17EXPL: 0

24 Feb 2005 — Multiple cross-site scripting (XSS) vulnerabilities in MediaWiki 1.3.x before 1.3.11 and 1.4 beta before 1.4 rc1 allow remote attackers to inject arbitrary web script. • http://secunia.com/advisories/14360 •