Vulnerabilities > Moinmo > Moinmoin > 1.9.2

DATE CVE VULNERABILITY TITLE RISK
2010-08-05 CVE-2010-2487 Cross-Site Scripting vulnerability in Moinmo Moinmoin
Multiple cross-site scripting (XSS) vulnerabilities in MoinMoin 1.7.3 and earlier, 1.8.x before 1.8.8, and 1.9.x before 1.9.3 allow remote attackers to inject arbitrary web script or HTML via crafted content, related to (1) Page.py, (2) PageEditor.py, (3) PageGraphicalEditor.py, (4) action/CopyPage.py, (5) action/Load.py, (6) action/RenamePage.py, (7) action/backup.py, (8) action/login.py, (9) action/newaccount.py, and (10) action/recoverpass.py.
network
moinmo CWE-79
4.3
2010-04-05 CVE-2010-0828 Cross-Site Scripting vulnerability in Moinmo Moinmoin 1.8.7/1.9.2
Cross-site scripting (XSS) vulnerability in action/Despam.py in the Despam action module in MoinMoin 1.8.7 and 1.9.2 allows remote authenticated users to inject arbitrary web script or HTML by creating a page with a crafted URI.
network
moinmo CWE-79
3.5