Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2008-5250
Description:Cross-site scripting (XSS) vulnerability in MediaWiki before 1.6.11, 1.12.x before 1.12.2, and 1.13.x before 1.13.3, when Internet Explorer is used and uploads are enabled, or an SVG scripting browser is used and SVG uploads are enabled, allows remote authenticated users to inject arbitrary web script or HTML by editing a wiki page.
Test IDs: 1.3.6.1.4.1.25623.1.0.65007  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2008-5250
BugTraq ID: 32844
http://www.securityfocus.com/bid/32844
Debian Security Information: DSA-1901 (Google Search)
http://www.debian.org/security/2009/dsa-1901
https://www.redhat.com/archives/fedora-package-announce/2008-December/msg01256.html
https://www.redhat.com/archives/fedora-package-announce/2008-December/msg01309.html
http://lists.wikimedia.org/pipermail/mediawiki-announce/2008-December/000080.html
http://secunia.com/advisories/33133
http://secunia.com/advisories/33349
SuSE Security Announcement: SUSE-SR:2009:004 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2009-02/msg00002.html




© 1998-2025 E-Soft Inc. All rights reserved.