vulnerability
FreeBSD: VID-AB804E60-D693-11E6-9171-14DAE9D210B8 (CVE-2016-7148): moinmoin -- XSS vulnerabilities
Severity | CVSS | Published | Added | Modified |
---|---|---|---|---|
4 | (AV:N/AC:M/Au:N/C:N/I:P/A:N) | Oct 31, 2016 | Jan 10, 2017 | May 7, 2019 |
Severity
4
CVSS
(AV:N/AC:M/Au:N/C:N/I:P/A:N)
Published
Oct 31, 2016
Added
Jan 10, 2017
Modified
May 7, 2019
Description
MoinMoin 1.9.8 allows remote attackers to conduct "JavaScript injection" attacks by using the "page creation" approach, related to a "Cross Site Scripting (XSS)" issue affecting the action=AttachFile (via page name) component.
Solution
freebsd-upgrade-package-moinmoin

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.