Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7hr8-25m7-6v3w

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

tiki-view_forum_thread.php in TikiWiki 1.9.0 through 1.9.2 allows remote attackers to obtain the installation path via an invalid topics_sort_mode parameter, possibly related to an SQL injection vulnerability.

tiki-view_forum_thread.php in TikiWiki 1.9.0 through 1.9.2 allows remote attackers to obtain the installation path via an invalid topics_sort_mode parameter, possibly related to an SQL injection vulnerability.

EPSS

Процентиль: 70%
0.00635
Низкий

Дефекты

CWE-200

Связанные уязвимости

nvd
почти 20 лет назад

tiki-view_forum_thread.php in TikiWiki 1.9.0 through 1.9.2 allows remote attackers to obtain the installation path via an invalid topics_sort_mode parameter, possibly related to an SQL injection vulnerability.

debian
почти 20 лет назад

tiki-view_forum_thread.php in TikiWiki 1.9.0 through 1.9.2 allows remo ...

EPSS

Процентиль: 70%
0.00635
Низкий

Дефекты

CWE-200