Description
The language converter in MediaWiki before 1.27.4, 1.28.x before 1.28.3, and 1.29.x before 1.29.2 allows attackers to replace text inside tags via a rule definition followed by "a lot of junk."
Remediation
References
Related Vulnerabilities
Apache Tomcat Other Vulnerability (CVE-2002-2009)
WordPress Plugin Custom css-js-php Unspecified Vulnerability (2.0.2)
WordPress Plugin Admin Custom Login Cross-Site Scripting (2.5.3.1)
Joomla Improper Access Control Vulnerability (CVE-2015-7899)
WordPress Plugin User Rights Access Manager Security Bypass (1.0.5)