Cross-site scripting (XSS) vulnerability in MediaWiki 1.19.9 before 1.19.10, 1.2x before 1.21.4, and 1.22.x before 1.22.1 allows remote attackers to inject arbitrary web script or HTML via unspecified CSS values.
References
Link | Resource |
---|---|
http://lists.wikimedia.org/pipermail/mediawiki-announce/2014-January/000138.html | Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: redhat
Published: 2020-01-28T14:56:22
Updated: 2020-01-28T14:56:22
Reserved: 2013-11-04T00:00:00
Link: CVE-2013-6451
JSON object: View
NVD Information
Status : Analyzed
Published: 2020-01-28T15:15:14.560
Modified: 2020-01-30T18:32:18.617
Link: CVE-2013-6451
JSON object: View
Redhat Information
No data.
CWE