CVE-2010-2969: XSS
Multiple cross-site scripting (XSS) vulnerabilities in MoinMoin 1.7.3 and earlier, and 1.9.x before 1.9.3, allow remote attackers to inject arbitrary web script or HTML via crafted content, related to (1) action/LikePages.py, (2) action/chart.py, and (3) action/userprofile.py, a similar issue to CVE-2010-2487.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-2969?
CVE-2010-2969 has a medium severity rating due to the potential for remote code execution via cross-site scripting exploits.
How do I fix CVE-2010-2969?
To fix CVE-2010-2969, upgrade MoinMoin to version 1.9.3 or later.
Which versions of MoinMoin are affected by CVE-2010-2969?
CVE-2010-2969 affects MoinMoin versions 1.7.3 and earlier, as well as 1.9.x before 1.9.3.
What are the implications of CVE-2010-2969 on my MoinMoin installation?
The implications of CVE-2010-2969 include potential injection of arbitrary web scripts or HTML by attackers.
Is CVE-2010-2969 only a concern for older versions of MoinMoin?
Yes, CVE-2010-2969 is primarily a concern for older versions, specifically those before 1.9.3.