Openpedia.org > MediaWiki Multiple Vulnerabilities - Secunia Advisories ...
[Latest Secunia Advisories] Some vulnerabilities have been reported in MediaWiki, which can be exploited by malicious users to conduct script insertion attacks and by malicious people to conduct cross-site scripting and request forgery attacks.
[Previous] Scripta Manent!: Install MediaWiki...
[Next] Published it? Wiki it! - The Scientist Community - debate. rel...
Some related posts from Technorati and Google.
[Wazi] MediaWiki 1.13.2 and prior: Although the MediaWiki team has reserved CVE records for each of these issues, they have not yet released detailed information to CVE Mitre. When this information is available through CVE Mitre and the National Vulnerabilities Database, we will republish the information in our standard notification format.
[[ISN] InfoSec News Mailing List] [ISN] Secunia Weekly Summary - Issue: 2008-51: UNIX/Linux:[SA33232] Ubuntu update for firefox[SA33231] Ubuntu update for firefox[SA33221] Adobe Flash Player for Linux SWF Processing Vulnerability[SA33216] Ubuntu update for firefox-3.0 and xulrunner-1.9[SA33189] Red Hat update for seamonkey[SA33188] Red Hat update for firefox[SA33179] Apple Mac OS X Security Update Fixes MultipleVulnerabilities[SA33178] Gentoo update for ruby[SA33170] Fedora update for roundcubemail[SA33140] Gentoo update for openoffice and openoffice-bin[SA33136] MPlayer TwinVQ Processing Buffer Overflow Vulnerability[SA33219] Ubuntu update for lcms[SA33201] Red Hat update for kernel[SA33195] SUSE update for clamav[SA33194] SUSE update for IBM Java[SA33187] Avaya CMS Sun Java JDK / JRE Multiple Vulnerabilities[SA33181] Red Hat update for enscript[SA33173] Gentoo update for jasper[SA33149] Gentoo update for dovecot[SA33148] Sun Solaris IPv4 Forwarding Denial of Service[SA33147] Fedora update for drupal[SA33142] Debian update for uw-imap[SA33137] Gentoo update for povray[SA33132] IBM WebSphere Portal Unspecified Security BypassVulnerability[SA33122] Joomla Live Chat Component "last" SQL InjectionVulnerabilities[SA33185] Ubuntu update for ruby1.9[SA33180] Debian update for linux-2.6[SA33156] Sun Solaris Apache "mod_proxy_http"
[Ohloh Edit Feed] MediaWiki: MediaWiki is the collaborative editing software that runs Wikipedia, the free encyclopaedia, and other projects. It's designed to handle a large number of users and pages without imposing too rigid a structure or workflow.
[F-Secure Vulnerability Descriptions] MediaWiki WikiHiero Extension Cross-Site Scripting Vulnerabilities: Some vulnerabilities have been reported in the WikiHiero extension for MediaWiki, which can be exploited by malicious people to conduct cross-site scripting attacks.
[Latest Secunia Advisories] GeekiGeeki Arbitrary File Disclosure Vulnerabilities - Secunia ...: functions in geekigeeki.py is not properly verified before being used to read files. This can be exploited to read arbitrary files from local resources via directory traversal attacks.
Reflected tags on Technorati: Blog, Mediawiki, Openpedia.org