Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The user_logout function in TikiWiki CMS/Groupware 4.x before 4.2 does not properly delete user login cookies, which allows remote attackers to gain access via cookie reuse.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
TikiWiki CMS/Groupware 'user_logout'信任管理漏洞
Vulnerability Description
TikiWiki是一款网站内容管理系统,基于PHP+ADOdb+Smarty等技术构建。 TikiWiki CMS/Groupware的user_logout功能存在信任管理漏洞。由于没有及时的删除用户登录cookies,远程认证用户可以借助cookie重新使用,获取访问。
CVSS Information
N/A
Vulnerability Type
N/A