Debian Mediawiki vulnerabilities
304 known vulnerabilities affecting debian/mediawiki.
Total CVEs
304
CISA KEV
0
Public exploits
6
Exploited in wild
1
Severity breakdown
CRITICAL4HIGH47MEDIUM133LOW94UNKNOWN6
Vulnerabilities
Page 16 of 16
CVE-2004-1405HIGHCVSS 7.5PoCfixed in mediawiki 1.4.9 (bookworm)2004
CVE-2004-1405 [HIGH] CVE-2004-1405: mediawiki - MediaWiki 1.3.8 and earlier, when used with Apache mod_mime, does not properly h...
MediaWiki 1.3.8 and earlier, when used with Apache mod_mime, does not properly handle files with two file extensions, such as .php.rar, which allows remote attackers to upload and execute arbitrary code.
Scope: local
bookworm: resolved (fixed in 1.4.9)
bullseye: resolved (fixed in 1.4.9)
forky: resolved (fixed in 1.4.9)
sid: resolved (fixed in 1.4.9)
trixie: resolve
debian
CVE-2004-2185MEDIUMCVSS 6.8fixed in mediawiki 1.4.9 (bookworm)2004
CVE-2004-2185 [MEDIUM] CVE-2004-2185: mediawiki - Multiple cross-site scripting (XSS) vulnerabilities in MediaWiki 1.3.5 allow rem...
Multiple cross-site scripting (XSS) vulnerabilities in MediaWiki 1.3.5 allow remote attackers to execute arbitrary scripts and/or SQL queries via (1) the UnicodeConverter extension, (2) raw page views, (3) SpecialIpblocklist, (4) SpecialEmailuser, (5) SpecialMaintenance, and (6) ImagePage.
Scope: local
bookworm: resolved (fixed in 1.4.9)
bullseye: resolved (fixed
debian
CVE-2004-2152MEDIUMCVSS 4.3fixed in mediawiki 1.4.9 (bookworm)2004
CVE-2004-2152 [MEDIUM] CVE-2004-2152: mediawiki - Cross-site scripting (XSS) vulnerability in 'raw' page output mode for MediaWiki...
Cross-site scripting (XSS) vulnerability in 'raw' page output mode for MediaWiki 1.3.4 and earlier allows remote attackers to inject arbitrary web script or HTML.
Scope: local
bookworm: resolved (fixed in 1.4.9)
bullseye: resolved (fixed in 1.4.9)
forky: resolved (fixed in 1.4.9)
sid: resolved (fixed in 1.4.9)
trixie: resolved (fixed in 1.4.9)
debian
CVE-2004-2187MEDIUMCVSS 5.0fixed in mediawiki 1.4.9 (bookworm)2004
CVE-2004-2187 [MEDIUM] CVE-2004-2187: mediawiki - Unknown vulnerability in ImagePage for MediaWiki 1.3.5, related to "filename val...
Unknown vulnerability in ImagePage for MediaWiki 1.3.5, related to "filename validation," has unknown impact and attack vectors.
Scope: local
bookworm: resolved (fixed in 1.4.9)
bullseye: resolved (fixed in 1.4.9)
forky: resolved (fixed in 1.4.9)
sid: resolved (fixed in 1.4.9)
trixie: resolved (fixed in 1.4.9)
debian
← Previous16 / 16