mediawiki mediawiki CVE-2008-0460 in MediaWiki and Microsoft Products
Published on January 25, 2008

product logo product logo
Cross-site scripting (XSS) vulnerability in api.php in (1) MediaWiki 1.11 through 1.11.0rc1, 1.10 through 1.10.2, 1.9 through 1.9.4, and 1.8; and (2) the BotQuery extension for MediaWiki 1.7 and earlier; when Internet Explorer is used, allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.

Vendor Advisory Vendor Advisory NVD


Products Associated with CVE-2008-0460

You can be notified by email with stack.watch whenever vulnerabilities like CVE-2008-0460 are published in these products:

 
 
 

Exploit Probability

EPSS
15.66%
Percentile
94.43%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.