Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
tiki-wiki_rss.php in Tikiwiki 1.9.5, 1.9.2, and possibly other versions allows remote attackers to obtain sensitive information (MySQL username and password) via an invalid (large or negative) ver parameter, which leaks the information in an error message.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Tikiwiki 'tiki-wiki_rss.php'敏感信息泄露漏洞
Vulnerability Description
Tikiwiki 1.9.5、1.9.2和可能其他版本中的tiki-wiki_rss.php存在敏感信息泄露漏洞。远程攻击者可以通过无效的(大或者负)ver参数来获取敏感信息(MySQL用户名和密码),该参数导致系统在出错消息内泄露这些信息。
CVSS Information
N/A
Vulnerability Type
N/A