Total vulnerabilities in the database
The image upload feature in Tiki CMS/Groupware (TikiWiki) 1.8.1 and earlier allows remote attackers to upload and possibly execute arbitrary files via the img/wiki_up URL.
Software | From | Fixed in |
---|---|---|
tiki / tikiwiki_cms/groupware | 1.6.1 | 1.6.1.x |
tiki / tikiwiki_cms/groupware | - | 1.8.1.x |