Summary
Detail | |||
---|---|---|---|
Vendor | Tiki | First view | 2013-11-06 |
Product | Tikiwiki Cms/Groupware | Last view | 2013-11-06 |
Version | 10.3 | Type | Application |
Update | * | ||
Edition | * | ||
Language | * | ||
Sofware Edition | * | ||
Target Software | * | ||
Target Hardware | * | ||
Other | * | ||
CPE Product | cpe:2.3:a:tiki:tikiwiki_cms/groupware |
Activity : Overall
Related : CVE
Date | Alert | Description | |
---|---|---|---|
7.5 | 2013-11-06 | CVE-2013-4715 | SQL injection vulnerability in Tiki Wiki CMS Groupware 6 LTS before 6.13LTS, 9 LTS before 9.7LTS, 10.x before 10.4, and 11.x before 11.1 allows remote attackers to execute arbitrary SQL commands via unspecified vectors. |
4.3 | 2013-11-06 | CVE-2013-4714 | Cross-site scripting (XSS) vulnerability in Tiki Wiki CMS Groupware 6 LTS before 6.13LTS, 9 LTS before 9.7LTS, 10.x before 10.4, and 11.x before 11.1 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors. |
CWE : Common Weakness Enumeration
% | id | Name |
---|---|---|
50% (1) | CWE-89 | Improper Sanitization of Special Elements used in an SQL Command ('... |
50% (1) | CWE-79 | Failure to Preserve Web Page Structure ('Cross-site Scripting') |