Multiple Vulnerabilities in MediaWiki Versions Prior to 1.16.4
MediaWiki® is an open source, open-content wiki software for websites.
Affected Application: MediaWiki versions prior to 1.16.4.
Issue: On 04/27/2011, multiple vulnerabilities were discovered in MediaWiki versions prior to 1.16.4. Vulnerabilities include injection and cross-site scripting (XSS). Attackers might use these vulnerabilities to execute unauthorized code, steal cookie-based authentication credentials, or perform other malicious actions.
Restolution: Install the current version of MediaWiki. Visit the vendor's website for information.
This information was compiled using information in the National Vulnerability Database. For more information about this issue, see the summary for CVE-2011-1587. To learn more about XSS and injection, see Cross-Site Scripting and Injection Flaws.
Website Protection Site Scanner scans for this vulnerability, and many more. To learn about Site Scanner, see Getting Started with Website Protection Site Scanner.