|
|
Subscribe / Log in / New account

ikiwiki: cross-site scripting

Package(s):ikiwiki CVE #(s):CVE-2012-0220
Created:May 17, 2012 Updated:May 29, 2012
Description:

From the Debian advisory:

Raúl Benencia discovered that ikiwiki, a wiki compiler, does not properly escape the author (and its URL) of certain metadata, such as comments. This might be used to conduct cross-site scripting attacks.

Alerts:
Fedora FEDORA-2012-8161 ikiwiki 2012-05-28
Fedora FEDORA-2012-8151 ikiwiki 2012-05-28
Fedora FEDORA-2012-7976 ikiwiki 2012-05-28
Debian DSA-2474-1 ikiwiki 2012-05-17

to post comments


Copyright © 2025, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds