Show filters
373 Total Results
Displaying 361-370 of 373
Sort by:
Attacker Value
Unknown
CVE-2005-3166
Disclosure Date: October 06, 2005 (last updated February 22, 2025)
Unspecified vulnerability in "edit submission handling" for MediaWiki 1.4.x before 1.4.10 and 1.3.x before 1.3.16 allows remote attackers to cause a denial of service (corruption of the previous submission) via a crafted URL.
0
Attacker Value
Unknown
CVE-2005-2396
Disclosure Date: July 27, 2005 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in MediaWiki 1.4.6 and earlier allows remote attackers to inject arbitrary web script or HTML via a parameter to the page move template.
0
Attacker Value
Unknown
CVE-2005-2215
Disclosure Date: July 12, 2005 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in MediaWiki before 1.4.x before 1.4.6 and 1.5 before 1.5beta3 allows remote attackers to inject arbitrary web script or HTML via a parameter in the page move template, a different vulnerability than CVE-2005-1888.
0
Attacker Value
Unknown
CVE-2005-1888
Disclosure Date: June 06, 2005 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in MediaWiki before 1.4.5 allows remote attackers to inject arbitrary web script via HTML attributes in page templates.
0
Attacker Value
Unknown
CVE-2005-0536
Disclosure Date: May 02, 2005 (last updated February 22, 2025)
Directory traversal vulnerability in MediaWiki 1.3.x before 1.3.11 and 1.4 beta before 1.4 rc1 allows remote attackers to delete arbitrary files or determine file existence via a parameter related to image deletion.
0
Attacker Value
Unknown
CVE-2005-0534
Disclosure Date: May 02, 2005 (last updated February 22, 2025)
Multiple cross-site scripting (XSS) vulnerabilities in MediaWiki 1.3.x before 1.3.11 and 1.4 beta before 1.4 rc1 allow remote attackers to inject arbitrary web script.
0
Attacker Value
Unknown
CVE-2005-1245
Disclosure Date: May 02, 2005 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in MediaWiki before 1.4.2, when using HTML Tidy ($wgUseTidy), allows remote attackers to inject arbitrary web script or HTML via unknown vectors.
0
Attacker Value
Unknown
CVE-2005-0535
Disclosure Date: February 22, 2005 (last updated February 22, 2025)
Cross-site request forgery (CSRF) vulnerability in MediaWiki 1.3.x before 1.3.11 and 1.4 beta before 1.4 rc1 allows remote attackers to perform unauthorized actions as authenticated MediaWiki users.
0
Attacker Value
Unknown
CVE-2004-2152
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in 'raw' page output mode for MediaWiki 1.3.4 and earlier allows remote attackers to inject arbitrary web script or HTML.
0
Attacker Value
Unknown
CVE-2004-2187
Disclosure Date: December 31, 2004 (last updated February 22, 2025)
Unknown vulnerability in ImagePage for MediaWiki 1.3.5, related to "filename validation," has unknown impact and attack vectors.
0