Description
Cross-site scripting (XSS) vulnerability in MediaWiki before 1.4.5 allows remote attackers to inject arbitrary web script via HTML attributes in page templates.
CVSS vector
AV:N/AC:M/C:N/I:P/A:NExploitability: 8.6 | Impact: 2.9Confidentiality: None
Availability: None
Affected Packages3 packages
🔴Vulnerability Details
4GHSAGHSA-v2mr-w6wh-43qf: Cross-site scripting (XSS) vulnerability in MediaWiki before 1↗2022-05-01 ▶ GHSAGHSA-fjxw-77h7-chv3: Cross-site scripting (XSS) vulnerability in MediaWiki before 1↗2022-05-01 ▶ OSVCVE-2005-2215: Cross-site scripting (XSS) vulnerability in MediaWiki before 1↗2005-07-12 ▶ OSVCVE-2005-1888: Cross-site scripting (XSS) vulnerability in MediaWiki before 1↗2005-06-06 ▶ 📋Vendor Advisories
2DebianCVE-2005-1888: mediawiki - Cross-site scripting (XSS) vulnerability in MediaWiki before 1.4.5 allows remote...↗2005 ▶ DebianCVE-2005-2215: mediawiki - Cross-site scripting (XSS) vulnerability in MediaWiki before 1.4.x before 1.4.6 ...↗2005 ▶