Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2009-0260
Description:Multiple cross-site scripting (XSS) vulnerabilities in action/AttachFile.py in MoinMoin before 1.8.1 allow remote attackers to inject arbitrary web script or HTML via an AttachFile action to the WikiSandBox component with (1) the rename parameter or (2) the drawing parameter (aka the basename variable).
Test IDs: 1.3.6.1.4.1.25623.1.0.63311   1.3.6.1.4.1.25623.1.0.64008  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2009-0260
BugTraq ID: 33365
http://www.securityfocus.com/bid/33365
Bugtraq: 20090120 MoinMoin Wiki Engine XSS Vulnerability (Google Search)
http://www.securityfocus.com/archive/1/500197/100/0/threaded
Debian Security Information: DSA-1715 (Google Search)
https://www.debian.org/security/2009/dsa-1715
http://osvdb.org/51485
http://secunia.com/advisories/33593
http://secunia.com/advisories/33716
http://secunia.com/advisories/33755
https://usn.ubuntu.com/716-1/
http://www.vupen.com/english/advisories/2009/0195
XForce ISS Database: moinmoin-attachfilepy-xss(48126)
https://exchange.xforce.ibmcloud.com/vulnerabilities/48126




© 1998-2025 E-Soft Inc. All rights reserved.