CVE-2005-3167

Priority
Description
Incomplete blacklist vulnerability in MediaWiki before 1.4.11 does not
properly remove certain CSS inputs (HTML inline style attributes) that are
processed as active content by Internet Explorer, which allows remote
attackers to conduct cross-site scripting (XSS) attacks.
Package
Upstream:needs-triage
More Information

Updated: 2019-01-14 21:37:15 UTC (commit 51f9b73af244ba86b9321e46e526586c25a8e060)