PublicDate: 2008-03-13 14:44:00 UTC Candidate: CVE-2008-1318 References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2008-1318 Description: Unspecified vulnerability in MediaWiki 1.11 before 1.11.2 allows remote attackers to obtain sensitive "cross-site" information via the callback parameter in an API call for JavaScript Object Notation (JSON) formatted results. Ubuntu-Description: Notes: Bugs: Priority: low Discovered-by: Assigned-to: CVSS: Patches_mediawiki: upstream_mediawiki: released (1:1.11.2-2) dapper_mediawiki: not-affected (1.4.14-1ubuntu1) edgy_mediawiki: not-affected (1.4.15-1) feisty_mediawiki: not-affected (1:1.7) gutsy_mediawiki: not-affected (1:1.10) devel_mediawiki: released (1:1.11.2-2)