CVE Vulnerabilities

CVE-2006-2895

Published: Jun 07, 2006 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
2.6 LOW
AV:N/AC:H/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Cross-site scripting (XSS) vulnerability in MediaWiki 1.6.0 up to versions before 1.6.7 allows remote attackers to inject arbitrary HTML and web script via the edit form.

Affected Software

NameVendorStart VersionEnd Version
MediawikiMediawiki1.6.0 (including)1.6.0 (including)
MediawikiMediawiki1.6.1 (including)1.6.1 (including)
MediawikiMediawiki1.6.2 (including)1.6.2 (including)
MediawikiMediawiki1.6.3 (including)1.6.3 (including)
MediawikiMediawiki1.6.4 (including)1.6.4 (including)
MediawikiMediawiki1.6.5 (including)1.6.5 (including)
MediawikiMediawiki1.6.5_r14348 (including)1.6.5_r14348 (including)
MediawikiMediawiki1.6.6 (including)1.6.6 (including)

References