CVE-2006-1165
EPSS 0.43%
Description
Cross-site scripting (XSS) vulnerability in the mediamanager module in DokuWiki before 2006-03-05 allows remote attackers to inject arbitrary web script or HTML via unknown attack vectors relating to "handling EXIF data."
How to fix CVE-2006-1165
To remediate CVE-2006-1165, upgrade the affected package to a fixed version below.
- Debian/dokuwiki—upgrade to 0.0.20060309-3 or later
Is CVE-2006-1165 being exploited?
Low — EPSS is 0.4%, meaning exploitation activity has not been observed at scale.
Affected packages (1)
- from 0, < 0.0.20060309-3