Back to search
CVE-2008-4408
Published: Oct 3, 2008
Modified: Aug 7, 2024
PUBLISHED
Description
Cross-site scripting (XSS) vulnerability in MediaWiki 1.13.1, 1.12.0, and possibly other versions before 1.13.2 allows remote attackers to inject arbitrary web script or HTML via the useskin parameter to an unspecified component.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
mediawiki-useskin-xss(45632)
vdb-entry
x_refsource_XF
[oss-security] 20081002 CVE request: XSS in mediawiki 1.13.1 and 1.12.0
mailing-list
x_refsource_MLIST
31540
vdb-entry
x_refsource_BID
32128
third-party-advisory
x_refsource_SECUNIA
FEDORA-2008-8678
vendor-advisory
x_refsource_FEDORA
ADV-2008-2737
vdb-entry
x_refsource_VUPEN
FEDORA-2008-8639
vendor-advisory
x_refsource_FEDORA
32131
third-party-advisory
x_refsource_SECUNIA
[MediaWiki-announce] 20081002 MediaWiki 1.13.2, 1.12.1 security update
mailing-list
x_refsource_MLIST
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now