Búsqueda de    
Vulnerabilidad   
    Buscar 324607 Descripciones CVE y
146377 Descripciones de Pruebas,
accesos 10,000+ referencias cruzadas.
Pruebas   CVE   Todos  

ID de Prueba:1.3.6.1.4.1.25623.1.0.100537
Categoría:Web application abuses
Título:Tiki Wiki CMS Groupware < 3.5, 4.x < 4.2 Multiple Unspecified Vulnerabilities
Resumen:Tiki Wiki CMS Groupware is prone to multiple; vulnerabilities.
Descripción:Summary:
Tiki Wiki CMS Groupware is prone to multiple
vulnerabilities.

Vulnerability Insight:
The following flaws exist:

- An unspecified SQL-injection vulnerability

- An unspecified authentication-bypass vulnerability

- An unspecified vulnerability

Vulnerability Impact:
Exploiting these issues could allow an attacker to compromise
the application, access or modify data, exploit latent vulnerabilities in the underlying database,
and gain unauthorized access to the affected application. Other attacks are also possible.

Affected Software/OS:
Tiki Wiki CMS Groupware prior to version 3.5 and 4.x prior to
4.2.

Solution:
Update to version 3.5, 4.2 or later.

CVSS Score:
7.5

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:P/A:P

Referencia Cruzada: Common Vulnerability Exposure (CVE) ID: CVE-2010-1133
BugTraq ID: 38608
http://www.securityfocus.com/bid/38608
http://osvdb.org/62800
http://secunia.com/advisories/38896
XForce ISS Database: tikiwiki-unknown-input-sql-injection(56769)
https://exchange.xforce.ibmcloud.com/vulnerabilities/56769
Common Vulnerability Exposure (CVE) ID: CVE-2010-1134
http://secunia.com/advisories/38882
Common Vulnerability Exposure (CVE) ID: CVE-2010-1135
XForce ISS Database: tikiwiki-userlogout-unspecified(56770)
https://exchange.xforce.ibmcloud.com/vulnerabilities/56770
Common Vulnerability Exposure (CVE) ID: CVE-2010-1136
http://tikiwiki.svn.sourceforge.net/viewvc/tikiwiki/branches/proposals/3.x/lib/userslib.php?r1=25196&r2=25195&pathrev=25196
http://osvdb.org/62801
XForce ISS Database: tikiwiki-standardmethod-unspecified(56771)
https://exchange.xforce.ibmcloud.com/vulnerabilities/56771
CopyrightCopyright (C) 2010 Greenbone AG

Esta es sólo una de 146377 pruebas de vulnerabilidad en nuestra serie de pruebas. Encuentre más sobre cómo ejecutar una auditoría de seguridad completa.

Para ejecutar una prueba gratuita de esta vulnerabilidad contra su sistema, regístrese ahora.




© 1998-2025 E-Soft Inc. Todos los derechos reservados.