Description
Mediawiki before 1.28.1 / 1.27.2 / 1.23.16 contains a flaw were Spam blacklist is ineffective on encoded URLs inside file inclusion syntax's link parameter.
Remediation
References
Related Vulnerabilities
WordPress Plugin Fancy Cats Multiple Cross-Site Scripting Vulnerabilities (1.1)
MediaWiki Other Vulnerability (CVE-2004-2152)
WordPress Plugin WP Mega Menu Security Bypass (1.3.9)
Internet Information Services Other Vulnerability (CVE-2002-1182)
WordPress Plugin Tutor LMS-eLearning and online course solution SQL Injection (2.6.1)