Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A Reflected Cross-Site Scripting (XSS) vulnerability exists in the POST request data zipPath of tiki-admin_system.php in Tiki version 21.2. This vulnerability allows attackers to execute arbitrary JavaScript code via a crafted payload, leading to potential access to sensitive information or unauthorized actions.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Tiki 安全漏洞
Vulnerability Description
Tiki是Tiki社区的一套开源的内容管理和门户应用程序,它可用于创建Web应用程序、门户网站、企业内部网、外联网等。 Tiki 21.2版本存在安全漏洞,该漏洞源于tiki-admin_system.php中zipPath参数输入验证不足,可能导致反射型跨站脚本攻击。
CVSS Information
N/A
Vulnerability Type
N/A