Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Fomafix

#43385de 53,630
6.1CVSS total
Vulnerabilidades · 1
PT-2017-5150
6.1
2017-10-26
Wikimedia · Mediawiki · CVE-2012-4378
Name of the Vulnerable Software and Affected Versions: MediaWiki versions prior to 1.18.5 MediaWiki versions 1.19.x prior to 1.19.2 Description: The issue allows remote attackers to inject arbitrary web script or HTML. This is possible when unspecified JavaScript gadgets are used via the `userlang` parameter to the "w/index.php" endpoint. Recommendations: For MediaWiki versions prior to 1.18.5, update to version 1.18.5 or later. For MediaWiki versions 1.19.x prior to 1.19.2, update to version 1.19.2 or later.