Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
lib/core/TikiFilter/PreventXss.php in Tiki Wiki CMS Groupware 16.2 allows remote attackers to bypass the XSS filter via padded zero characters, as demonstrated by an attack on tiki-batch_send_newsletter.php.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Tiki Wiki CMS Groupware 安全漏洞
Vulnerability Description
Tiki Wiki CMS Groupware是Tiki软件社区的一套开源的内容管理和门户应用程序,它可用于创建Web应用程序、门户网站、企业内部网、外联网等。 Tiki Wiki CMS Groupware 16.2版本中的lib/core/TikiFilter/PreventXss.php文件存在安全漏洞。远程攻击者可利用该漏洞绕过跨站脚本过滤器。
CVSS Information
N/A
Vulnerability Type
N/A