Vulnerability index

Browse CVEs

8 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

MEDIUM 6.1 CVE-2016-7148 MoinMoin 1.9.8 allows remote attackers to conduct "JavaScript injection" attacks by using the "page creation" approach, related to a "Cross Site Scri… Moinmoin No fix yet Fix from $1,6002016-11-10 MEDIUM 6.1 CVE-2016-7146 MoinMoin 1.9.8 allows remote attackers to conduct "JavaScript injection" attacks by using the "page creation or crafted URL" approach, related to a "… Moinmoin No fix yet Fix from $1,6002016-11-10 MEDIUM 6.0 CVE-2012-4404 security/__init__.py in MoinMoin 1.9 through 1.9.4 does not properly handle group names that contain virtual group names such as "All," "Known," or "… Moinmoin Mitigation only Fix from $1,6002012-09-10 MEDIUM 5.0 CVE-2010-1238 MoinMoin 1.7.1 allows remote attackers to bypass the textcha protection mechanism by modifying the textcha-question and textcha-answer fields to have… Moinmoin Mitigation only Fix from $1,6002010-04-05 MEDIUM 5.0 CVE-2010-0667 MoinMoin 1.9 before 1.9.1 does not perform the expected clearing of the sys.argv array in situations where the GATEWAY_INTERFACE environment variable… Moinmoin Mitigation only Fix from $1,6002010-02-26 MEDIUM 6.8 CVE-2008-6603 MoinMoin 1.6.2 and 1.7 does not properly enforce ACL checks when acl_hierarchic is set to True, which might allow remote attackers to bypass intended… Moinmoin No fix yet Fix from $1,6002009-04-03 MEDIUM 5.0 CVE-2008-6548 The rst parser (parser/text_rst.py) in MoinMoin 1.6.1 does not check the ACL of an included page, which allows attackers to read unauthorized include… Moinmoin Mitigation only Fix from $1,6002009-03-30 MEDIUM 5.0 CVE-2008-6549 The password_checker function in config/multiconfig.py in MoinMoin 1.6.1 uses the cracklib and python-crack features even though they are not thread-… Moinmoin No fix yet Fix from $1,6002009-03-30