Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2012-4379
Description:MediaWiki before 1.18.5, and 1.19.x before 1.19.2 does not send a restrictive X-Frame-Options HTTP header, which allows remote attackers to conduct clickjacking attacks via an embedded API response in an IFRAME element.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2012-4379
https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=686330
https://lists.wikimedia.org/pipermail/mediawiki-announce/2012-August/000119.html
http://www.openwall.com/lists/oss-security/2012/08/31/6
http://www.openwall.com/lists/oss-security/2012/08/31/10




© 1998-2025 E-Soft Inc. All rights reserved.