Описание
Tiki Wiki CMS Groupware Cross-site scripting (XSS) vulnerability
Cross-site scripting (XSS) vulnerability in Tiki Wiki CMS Groupware 6 LTS before 6.13LTS, 9 LTS before 9.7LTS, 10.x before 10.4, and 11.x before 11.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Ссылки
- https://nvd.nist.gov/vuln/detail/CVE-2013-4714
- https://tiki.org/article401-New-Versions-of-all-supported-versions-of-Tiki-Wiki-CMS-Groupware
- http://info.tiki.org/article221-New-Versions-of-all-supported-versions-of-Tiki-Wiki-CMS-Groupware
- http://jvn.jp/en/jp/JVN81813850/index.html
- http://jvndb.jvn.jp/jvndb/JVNDB-2013-000099
Пакеты
tikiwiki/tiki-manager
>= 6.0, < 6.13
6.13
tikiwiki/tiki-manager
>= 9.0, < 9.7
9.7
tikiwiki/tiki-manager
>= 10.0, < 10.4
10.4
tikiwiki/tiki-manager
>= 11.0, < 11.1
11.1
Связанные уязвимости
Cross-site scripting (XSS) vulnerability in Tiki Wiki CMS Groupware 6 LTS before 6.13LTS, 9 LTS before 9.7LTS, 10.x before 10.4, and 11.x before 11.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Cross-site scripting (XSS) vulnerability in Tiki Wiki CMS Groupware 6 ...