Bugsalert.com
Security News about Viruses, Spyware,
Trojans, Malware, XSS attacks.

CVE-2008-1098 (MoinMoin)

BugsAlert Home > CVE-2008-1098 (MoinMoin)
 
 

Multiple cross-site scripting (XSS) vulnerabilities in MoinMoin 1.5.8 and earlier allow remote attackers to inject arbitrary web script or HTML via (1) certain input processed by formatter/text_gedit.py (aka the gui editor formatter); (2) a page name, which triggers an injection in PageEditor.py when the page is successfully deleted by a victim in a DeletePage action; or (3) the destination page name for a RenamePage action, which triggers an injection in PageEditor.py when a victim's rename ...




Original Source: http://nvd.nist.gov/nvd.cfm?cvename=CVE-2008-1098

Learn more about CVE-2008-1098 (MoinMoin)
 
Tags: cve-2008-1098 moinmoin

Related Items

      Raining on Ukraine?s Government Site

      CVE-2008-0720 (Webmin, Usermin)

      CVE-2007-6673 (Makale Scripti)

      CVE-2008-4544 (unity)

      FrSIRT - Slackware Security Update Fixes Python Code Execution and DoS Issues

      CVE-2008-3696 (VMWare Workstation, VMWare Player, ACE, VMware Server)

      Microsoft Office CDO URI Handling Cross-Site Scripting

 

Pixel