Show filters
373 Total Results
Displaying 361-370 of 373
Sort by:
Attacker Value
Unknown

CVE-2005-3166

Disclosure Date: October 06, 2005 (last updated February 22, 2025)
Unspecified vulnerability in "edit submission handling" for MediaWiki 1.4.x before 1.4.10 and 1.3.x before 1.3.16 allows remote attackers to cause a denial of service (corruption of the previous submission) via a crafted URL.
0
Attacker Value
Unknown

CVE-2005-2396

Disclosure Date: July 27, 2005 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in MediaWiki 1.4.6 and earlier allows remote attackers to inject arbitrary web script or HTML via a parameter to the page move template.
0
Attacker Value
Unknown

CVE-2005-2215

Disclosure Date: July 12, 2005 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in MediaWiki before 1.4.x before 1.4.6 and 1.5 before 1.5beta3 allows remote attackers to inject arbitrary web script or HTML via a parameter in the page move template, a different vulnerability than CVE-2005-1888.
0
Attacker Value
Unknown

CVE-2005-1888

Disclosure Date: June 06, 2005 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in MediaWiki before 1.4.5 allows remote attackers to inject arbitrary web script via HTML attributes in page templates.
0
Attacker Value
Unknown

CVE-2005-0536

Disclosure Date: May 02, 2005 (last updated February 22, 2025)
Directory traversal vulnerability in MediaWiki 1.3.x before 1.3.11 and 1.4 beta before 1.4 rc1 allows remote attackers to delete arbitrary files or determine file existence via a parameter related to image deletion.
0
Attacker Value
Unknown

CVE-2005-0534

Disclosure Date: May 02, 2005 (last updated February 22, 2025)
Multiple cross-site scripting (XSS) vulnerabilities in MediaWiki 1.3.x before 1.3.11 and 1.4 beta before 1.4 rc1 allow remote attackers to inject arbitrary web script.
0
Attacker Value
Unknown

CVE-2005-1245

Disclosure Date: May 02, 2005 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in MediaWiki before 1.4.2, when using HTML Tidy ($wgUseTidy), allows remote attackers to inject arbitrary web script or HTML via unknown vectors.
0
Attacker Value
Unknown

CVE-2005-0535

Disclosure Date: February 22, 2005 (last updated February 22, 2025)
Cross-site request forgery (CSRF) vulnerability in MediaWiki 1.3.x before 1.3.11 and 1.4 beta before 1.4 rc1 allows remote attackers to perform unauthorized actions as authenticated MediaWiki users.
0
Attacker Value
Unknown

CVE-2004-2152

Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in 'raw' page output mode for MediaWiki 1.3.4 and earlier allows remote attackers to inject arbitrary web script or HTML.
0
Attacker Value
Unknown

CVE-2004-2187

Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Unknown vulnerability in ImagePage for MediaWiki 1.3.5, related to "filename validation," has unknown impact and attack vectors.
0