MediaWiki是美国MediaWiki(维基媒体)基金会的一套自由免费的基于网络的Wiki引擎。该产品可用于部署内部的知识管理和内容管理系统。MobileFrontend extension是使用在其中的一个移动前端扩展。 MediaWiki MobileFrontend extension 1.31版本至1.33版本中的includes/specials/MobileSpecialPageFeed.php文件的edit summary字段存在跨站脚本漏洞。该漏洞源于WEB应用缺少对客户端数据的正确验
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2019-14804 | UNA 跨站脚本漏洞 | |
| CVE-2019-14792 | WordPress WP Google Maps插件跨站脚本漏洞 | |
| CVE-2019-14793 | WordPress Meta Box插件访问控制错误漏洞 | |
| CVE-2019-14234 | Django SQL注入漏洞 | |
| CVE-2019-14799 | WordPress FV Flowplayer Video Player插件跨站脚本漏洞 | |
| CVE-2019-14787 | WordPress Tribulant Newsletters插件跨站脚本漏洞 | |
| CVE-2019-14312 | Aptana Jaxer 路径遍历漏洞 | |
| CVE-2016-10865 | WordPress Lightbox Plus Colorbox插件跨站请求伪造漏洞 | |
| CVE-2019-14785 | WordPress CP Contact Form with PayPal插件跨站脚本漏洞 | |
| CVE-2019-14801 | WordPress FV Flowplayer Video Player插件 SQL注入漏洞 | |
| CVE-2019-14798 | WordPress 10Web Photo Gallery插件路径遍历漏洞 | |
| CVE-2019-14797 | WordPress 10Web Photo Gallery插件跨站脚本漏洞 | |
| CVE-2019-14796 | WordPress mq-woocommerce-products-price-bulk-edit插件跨站脚本漏洞 | |
| CVE-2019-14791 | WordPress Appointment Booking Calendar插件跨站脚本漏洞 | |
| CVE-2019-14794 | WordPress Meta Box插件代码问题漏洞 | |
| CVE-2019-12261 | Wind River Systems VxWorks 缓冲区错误漏洞 | |
| CVE-2019-14805 | UNA 跨站脚本漏洞 | |
| CVE-2019-14806 | Pallets Werkzeug 安全特征问题漏洞 | |
| CVE-2018-20858 | Recommender 跨站脚本漏洞 | |
| CVE-2017-18486 | Jitbit Software Helpdesk 安全特征问题漏洞 |
Showing top 20 of 30 CVEs. View all on vendor page → →
No comments yet