Vulnerabilities > Mediawiki > Mediawiki > 1.4.beta3

DATE CVE VULNERABILITY TITLE RISK
2005-05-02 CVE-2005-1245 HTML Tidy Cross-Site Scripting vulnerability in MediaWiki
Cross-site scripting (XSS) vulnerability in MediaWiki before 1.4.2, when using HTML Tidy ($wgUseTidy), allows remote attackers to inject arbitrary web script or HTML via unknown vectors.
network
mediawiki
4.3
2005-05-02 CVE-2005-0536 Unspecified vulnerability in Mediawiki
Directory traversal vulnerability in MediaWiki 1.3.x before 1.3.11 and 1.4 beta before 1.4 rc1 allows remote attackers to delete arbitrary files or determine file existence via a parameter related to image deletion.
network
low complexity
mediawiki
5.0
2005-05-02 CVE-2005-0534 Unspecified vulnerability in Mediawiki
Multiple cross-site scripting (XSS) vulnerabilities in MediaWiki 1.3.x before 1.3.11 and 1.4 beta before 1.4 rc1 allow remote attackers to inject arbitrary web script.
network
mediawiki
4.3