mediawiki: JavaScript code injection
| Package(s): | mediawiki | CVE #(s): | |||||
| Created: | July 20, 2005 | Updated: | July 20, 2005 | ||||
| Description: | MediaWiki has a vulnerability caused by failing to correctly escape a parameter in the page move template. Remote attackers can use this to inject and execute JavaScript code with the permission of the user's browser session. | ||||||
| Alerts: |
| ||||||
