Debian Mediawiki vulnerabilities

304 known vulnerabilities affecting debian/mediawiki.

Total CVEs
304
CISA KEV
0
Public exploits
6
Exploited in wild
1
Severity breakdown
CRITICAL4HIGH47MEDIUM133LOW94UNKNOWN6

Vulnerabilities

Page 16 of 16
CVE-2004-1405HIGHCVSS 7.5PoCfixed in mediawiki 1.4.9 (bookworm)2004
CVE-2004-1405 [HIGH] CVE-2004-1405: mediawiki - MediaWiki 1.3.8 and earlier, when used with Apache mod_mime, does not properly h... MediaWiki 1.3.8 and earlier, when used with Apache mod_mime, does not properly handle files with two file extensions, such as .php.rar, which allows remote attackers to upload and execute arbitrary code. Scope: local bookworm: resolved (fixed in 1.4.9) bullseye: resolved (fixed in 1.4.9) forky: resolved (fixed in 1.4.9) sid: resolved (fixed in 1.4.9) trixie: resolve
debian
CVE-2004-2185MEDIUMCVSS 6.8fixed in mediawiki 1.4.9 (bookworm)2004
CVE-2004-2185 [MEDIUM] CVE-2004-2185: mediawiki - Multiple cross-site scripting (XSS) vulnerabilities in MediaWiki 1.3.5 allow rem... Multiple cross-site scripting (XSS) vulnerabilities in MediaWiki 1.3.5 allow remote attackers to execute arbitrary scripts and/or SQL queries via (1) the UnicodeConverter extension, (2) raw page views, (3) SpecialIpblocklist, (4) SpecialEmailuser, (5) SpecialMaintenance, and (6) ImagePage. Scope: local bookworm: resolved (fixed in 1.4.9) bullseye: resolved (fixed
debian
CVE-2004-2152MEDIUMCVSS 4.3fixed in mediawiki 1.4.9 (bookworm)2004
CVE-2004-2152 [MEDIUM] CVE-2004-2152: mediawiki - Cross-site scripting (XSS) vulnerability in 'raw' page output mode for MediaWiki... Cross-site scripting (XSS) vulnerability in 'raw' page output mode for MediaWiki 1.3.4 and earlier allows remote attackers to inject arbitrary web script or HTML. Scope: local bookworm: resolved (fixed in 1.4.9) bullseye: resolved (fixed in 1.4.9) forky: resolved (fixed in 1.4.9) sid: resolved (fixed in 1.4.9) trixie: resolved (fixed in 1.4.9)
debian
CVE-2004-2187MEDIUMCVSS 5.0fixed in mediawiki 1.4.9 (bookworm)2004
CVE-2004-2187 [MEDIUM] CVE-2004-2187: mediawiki - Unknown vulnerability in ImagePage for MediaWiki 1.3.5, related to "filename val... Unknown vulnerability in ImagePage for MediaWiki 1.3.5, related to "filename validation," has unknown impact and attack vectors. Scope: local bookworm: resolved (fixed in 1.4.9) bullseye: resolved (fixed in 1.4.9) forky: resolved (fixed in 1.4.9) sid: resolved (fixed in 1.4.9) trixie: resolved (fixed in 1.4.9)
debian