Newsan you have a safer online experience and be immune to computer security vulnerabilities? Well, you can have a safer experience if you get up to date with the latest news and security software. Unfortunately nobody is immune to all the computer security vulnerabilities out there, but knowing about them and being aware is definitely a step in the right direction. A new vulnerability has been discovered in MediaWiki which could cause a lot of trouble for its users. This vulnerability has taken place because of the factor that when input is passed to the "ip" parameter of the "Special: Blocks" page, it is not adequately modified prior to being returned to the administrator. This vulnerability could be exploited by malicious online characters in order to execute arbitrary HTML script code. This may take place within the browsing session of the administrator, should he/she access an infected site. MediaWiki is a fantastic free software package which has been written in the PHP programming language. It was originally designed for specific use on the popular Wikipedia, but it is by no means the same as the free popular Wikipedia. It should work with whatever version of Windows you happen to be running, with the inclusion of Windows Millennium Edition which includes but is not limited to these files: bt829.sys, carddrv.exe, defrag.bat and enable.inf. If this vulnerability is adequately exploited by malicious online attackers cross site scripting attacks could take place. If this takes place then attackers will be able to bypass the access controls and conduct phishing attacks on your computer. Identity theft is another issue which has a high risk of taking place after a cross site scripting attack has occurred. This vulnerability has been confirmed in versions 1.14.0 and 1.15.0. You are probably wondering what you can do in order to stop yourself from becoming a victim of a cross site scripting attacks. The good news is that MediaWiki is very aware of this vulnerability and has created an update for its users in order to rectify the problem. All MediaWiki users are now able to update to version 1.14.1 as well as version 1.15.1. It really is within your best interest to apply the updates in order to have a safer MediaWiki experience. I would like to leave you with a quote in conclusion:"When I took office, only high energy physicists had ever heard of what is called the Worldwide Web.... Now even my cat has its own page."-Bill Clinton |
Software Downloads



User Comments