Описание
TikiWiki before 1.8.4.1 does not properly verify uploaded images, which could allow remote attackers to upload and execute arbitrary PHP scripts, a different vulnerability than CVE-2005-0200.
Ссылки
- Patch
- Patch
- Patch
- Patch
- Patch
- Patch
Уязвимые конфигурации
Конфигурация 1Версия до 1.6.1 (включая)
cpe:2.3:a:tiki:tikiwiki_cms\/groupware:*:*:*:*:*:*:*:*
EPSS
Процентиль: 78%
0.012
Низкий
7.5 High
CVSS2
Дефекты
CWE-20
Связанные уязвимости
debian
больше 20 лет назад
TikiWiki before 1.8.4.1 does not properly verify uploaded images, whic ...
github
больше 3 лет назад
TikiWiki before 1.8.4.1 does not properly verify uploaded images, which could allow remote attackers to upload and execute arbitrary PHP scripts, a different vulnerability than CVE-2005-0200.
EPSS
Процентиль: 78%
0.012
Низкий
7.5 High
CVSS2
Дефекты
CWE-20