Description
An issue was discovered in the WatchAnalytics extension in MediaWiki before 1.40.2. XSS can occur via the Special:PageStatistics page parameter.
Remediation
References
Related Vulnerabilities
PmWiki Improper Control of Generation of Code ('Code Injection') Vulnerability (CVE-2011-4453)
WordPress Plugin Livemesh SiteOrigin Widgets Security Bypass (2.5.1)
Oracle Database Server CVE-2012-0510 Vulnerability (CVE-2012-0510)
WordPress Plugin Asgaros Forum Multiple Vulnerabilities (1.15.14)
MySQL Permissions, Privileges, and Access Controls Vulnerability (CVE-2012-4452)