CVE-2017-8811

MEDIUM6.1EPSS 0.33%
Published: 11/15/2017Modified: 4/28/2026
Also known as:DEBIAN-CVE-2017-8811

Description

The implementation of raw message parameter expansion in MediaWiki before 1.27.4, 1.28.x before 1.28.3, and 1.29.x before 1.29.2 allows HTML mangling attacks.

Affected packages (1)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1MEDIUM6.1CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

References (1)