Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2014-2853
Description:Cross-site scripting (XSS) vulnerability in includes/actions/InfoAction.php in MediaWiki before 1.21.9 and 1.22.x before 1.22.6 allows remote attackers to inject arbitrary web script or HTML via the sort key in an info action.
Test IDs: 1.3.6.1.4.1.25623.1.1.10.2014.0197  
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2014-2853
BugTraq ID: 67068
http://www.securityfocus.com/bid/67068
https://bugzilla.redhat.com/show_bug.cgi?id=1091967
https://github.com/wikimedia/mediawiki-core/commit/0b695ae09aada343ab59be4a3c9963995a1143b6
http://lists.wikimedia.org/pipermail/mediawiki-announce/2014-April/000149.html
http://www.securitytracker.com/id/1030161
http://secunia.com/advisories/58262




© 1998-2025 E-Soft Inc. All rights reserved.