CVE-2005-3167

Priority
Description
Incomplete blacklist vulnerability in MediaWiki before 1.4.11 does not
properly remove certain CSS inputs (HTML inline style attributes) that are
processed as active content by Internet Explorer, which allows remote
attackers to conduct cross-site scripting (XSS) attacks.
Notes
Package
Upstream:needs-triage
More Information

Updated: 2020-03-18 21:50:25 UTC (commit 2ea7df7bd1e69e1e489978d2724a936eb3faa1b8)