Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Incomplete blacklist vulnerability in MediaWiki before 1.4.11 does not properly remove certain CSS inputs (HTML inline style attributes) that are processed as active content by Internet Explorer, which allows remote attackers to conduct cross-site scripting (XSS) attacks.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
MediaWiki HTML Inline Style Attributes未明跨站脚本攻击漏洞
Vulnerability Description
MediaWiki是一套最早为维基百科量身打造的自由免费的wiki套件。 MediaWiki 1.4.11之前版本存在不完整黑名单漏洞,不能正确删除由Internet Explorer作为活动内容处理的特定CSS输入(HTML内嵌样式属性) ,使远程攻击者得以进行跨站脚本(XSS)攻击。
CVSS Information
N/A
Vulnerability Type
N/A