First published: Tue Oct 29 2019(Updated: )
Cross Site Scripting (XSS) in ikiwiki before 3.20110122 could allow remote attackers to insert arbitrary JavaScript due to insufficient checking in comments.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
debian/ikiwiki | 3.20200202.3-1 3.20200202.4-2 | |
Ikiwiki | <3.20110122 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-0428 is classified as a medium severity vulnerability due to its potential for enabling cross-site scripting in affected versions of ikiwiki.
To fix CVE-2011-0428, upgrade to ikiwiki version 3.20200202.3-1 or later.
CVE-2011-0428 affects ikiwiki versions prior to 3.20110122.
CVE-2011-0428 is a Cross Site Scripting (XSS) vulnerability that allows attackers to inject arbitrary JavaScript.
Yes, CVE-2011-0428 can be exploited by remote attackers through insufficient validation in comments.