Cross-site scripting (XSS) vulnerability in the BotQuery extension in MediaWiki 1.7.x and previous versions before SVN 20070910 allows remote malicious users to inject arbitrary web script or HTML via unspecified vectors, a similar issue to CVE-2007-4828.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
mediawiki mediawiki 1.7.1 |
||
mediawiki mediawiki 1.7.2 |
||
mediawiki mediawiki 1.7.3 |
||
mediawiki mediawiki 1.7.0 |