Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-0460 (MediaWiki, ie, MediaWiki BotQuery Ext)

BugsAlert Home > CVE-2008-0460 (MediaWiki, ie, MediaWiki BotQuery Ext)
 
 

Cross-site scripting (XSS) vulnerability in api.php in (1) MediaWiki 1.11 through 1.11.0rc1, 1.10 through 1.10.2, 1.9 through 1.9.4, and 1.8; and (2) the BotQuery extension for MediaWiki 1.7 and earlier; when Internet Explorer is used, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-0460

Learn more about CVE-2008-0460 (MediaWiki, ie, MediaWiki BotQuery Ext)
 
Tags: cve-2008-0460 mediawiki mediawiki botquery ext

Related Items

      A Tangled Web? of Malware

      FrSIRT - Oramon "oramon.ini" Remote Information Disclosure Vulnerability

      CVE-2007-6636 (Bitflu)

      TROJ_GAMET.BH

      CVE-2008-4152 (talk)

      CVE-2008-2765 (Absolute Image Gallery XE)

      FrSIRT - shareCMS "eventID" and "userID" Remote SQL Injection Vulnerabilities

 

Pixel