Description
Cross-site scripting (XSS) vulnerability in the mediamanager module in DokuWiki before 2006-03-05 allows remote attackers to inject arbitrary web script or HTML via unknown attack vectors relating to "handling EXIF data."
Affected products
- andreas_gohr / dokuwikirelease_2004-07-04 – release_2004-07-04
- andreas_gohr / dokuwikirelease_2004-07-07 – release_2004-07-07
- andreas_gohr / dokuwikirelease_2004-07-12 – release_2004-07-12
- andreas_gohr / dokuwikirelease_2004-07-21 – release_2004-07-21
- andreas_gohr / dokuwikirelease_2004-07-25 – release_2004-07-25
- andreas_gohr / dokuwikirelease_2004-08-08 – release_2004-08-08
- andreas_gohr / dokuwikirelease_2004-08-15a – release_2004-08-15a
- andreas_gohr / dokuwikirelease_2004-08-22 – release_2004-08-22
- andreas_gohr / dokuwikirelease_2004-09-12 – release_2004-09-12
- andreas_gohr / dokuwikirelease_2004-09-25 – release_2004-09-25
- andreas_gohr / dokuwikirelease_2004-09-30 – release_2004-09-30
- andreas_gohr / dokuwikirelease_2004-10-19 – release_2004-10-19
- andreas_gohr / dokuwikirelease_2004-11-01 – release_2004-11-01
- andreas_gohr / dokuwikirelease_2004-11-02 – release_2004-11-02
- andreas_gohr / dokuwikirelease_2004-11-10 – release_2004-11-10
- andreas_gohr / dokuwikirelease_2005-01-14 – release_2005-01-14
- andreas_gohr / dokuwikirelease_2005-01-15 – release_2005-01-15
- andreas_gohr / dokuwikirelease_2005-01-16a – release_2005-01-16a
- andreas_gohr / dokuwikirelease_2005-02-06 – release_2005-02-06
- andreas_gohr / dokuwikirelease_2005-02-18 – release_2005-02-18
- andreas_gohr / dokuwikirelease_2005-05-07 – release_2005-05-07
- andreas_gohr / dokuwikirelease_2005-07-01 – release_2005-07-01
- andreas_gohr / dokuwikirelease_2005-07-13 – release_2005-07-13
- andreas_gohr / dokuwikirelease_2005-09-19 – release_2005-09-19
- andreas_gohr / dokuwikirelease_2005-09-22 – release_2005-09-22
- andreas_gohr / dokuwikirelease_2006-03-05 – release_2006-03-05