Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.100537
Category:Web application abuses
Title:Tiki Wiki CMS Groupware < 3.5, 4.x < 4.2 Multiple Unspecified Vulnerabilities
Summary:Tiki Wiki CMS Groupware is prone to multiple; vulnerabilities.
Description:Summary:
Tiki Wiki CMS Groupware is prone to multiple
vulnerabilities.

Vulnerability Insight:
The following flaws exist:

- An unspecified SQL-injection vulnerability

- An unspecified authentication-bypass vulnerability

- An unspecified vulnerability

Vulnerability Impact:
Exploiting these issues could allow an attacker to compromise
the application, access or modify data, exploit latent vulnerabilities in the underlying database,
and gain unauthorized access to the affected application. Other attacks are also possible.

Affected Software/OS:
Tiki Wiki CMS Groupware prior to version 3.5 and 4.x prior to
4.2.

Solution:
Update to version 3.5, 4.2 or later.

CVSS Score:
7.5

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:P/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2010-1133
BugTraq ID: 38608
http://www.securityfocus.com/bid/38608
http://osvdb.org/62800
http://secunia.com/advisories/38896
XForce ISS Database: tikiwiki-unknown-input-sql-injection(56769)
https://exchange.xforce.ibmcloud.com/vulnerabilities/56769
Common Vulnerability Exposure (CVE) ID: CVE-2010-1134
http://secunia.com/advisories/38882
Common Vulnerability Exposure (CVE) ID: CVE-2010-1135
XForce ISS Database: tikiwiki-userlogout-unspecified(56770)
https://exchange.xforce.ibmcloud.com/vulnerabilities/56770
Common Vulnerability Exposure (CVE) ID: CVE-2010-1136
http://tikiwiki.svn.sourceforge.net/viewvc/tikiwiki/branches/proposals/3.x/lib/userslib.php?r1=25196&r2=25195&pathrev=25196
http://osvdb.org/62801
XForce ISS Database: tikiwiki-standardmethod-unspecified(56771)
https://exchange.xforce.ibmcloud.com/vulnerabilities/56771
CopyrightCopyright (C) 2010 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.