PT-2006-4291 · Moniwiki · Moniwiki

Kil13R

+1

·

Publicado

2006-07-06

·

Atualizado

2018-10-18

·

CVE-2006-3399

CVSS v2.0

2.6

Baixa

VetorAV:N/AC:H/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions MoniWiki versions prior to 1.1.2-20060702
Description The issue is related to a cross-site scripting (XSS) vulnerability. It allows remote attackers to inject arbitrary Javascript via the URL, which is then reflected back in an error message.
Recommendations For versions prior to 1.1.2-20060702, update to version 1.1.2-20060702 or later to resolve the issue. As a temporary workaround, consider restricting access to the wiki.php file to minimize the risk of exploitation.

Exploit

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2006-3399

Produtos afetados

Moniwiki