Описание
Tiki Wiki CMS XSS Vulnerability
Tiki 17.1 allows upload of a .PNG file that actually has SVG content, leading to XSS.
Пакеты
Наименование
tikiwiki/tiki-manager
composer
Затронутые версииВерсия исправления
<= 17.1
Отсутствует
Связанные уязвимости
CVSS3: 5.4
nvd
почти 8 лет назад
Tiki 17.1 allows upload of a .PNG file that actually has SVG content, leading to XSS.
CVSS3: 5.4
debian
почти 8 лет назад
Tiki 17.1 allows upload of a .PNG file that actually has SVG content, ...