ikiwiki: cross-site scripting
Package(s): | ikiwiki | CVE #(s): | CVE-2012-0220 | ||||||||||||||||
Created: | May 17, 2012 | Updated: | May 29, 2012 | ||||||||||||||||
Description: | From the Debian advisory: Raúl Benencia discovered that ikiwiki, a wiki compiler, does not properly escape the author (and its URL) of certain metadata, such as comments. This might be used to conduct cross-site scripting attacks. | ||||||||||||||||||
Alerts: |
|