CVE-2005-3167 (retired)

Priority
Description
Incomplete blacklist vulnerability in MediaWiki before 1.4.11 does not
properly remove certain CSS inputs (HTML inline style attributes) that are
processed as active content by Internet Explorer, which allows remote
attackers to conduct cross-site scripting (XSS) attacks.
Package
Upstream:needs-triage
More Information

Updated: 2019-09-19 15:02:28 UTC (commit d32ebc32606b9517c6fa7d65a15441e2a57a6de5)