7.5
CVSSv2

CVE-2002-2106

Published: 31/12/2002 Updated: 19/12/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

PHP remote file inclusion vulnerability in WikkiTikkiTavi prior to 0.21 allows remote malicious users to execute arbitrary PHP code via the TemplateDir variable, as demonstrated using conflict.php.

Vulnerable Product Search on Vulmon Subscribe to Product

wikkitikkitavi wikkitikkitavi 0.10

wikkitikkitavi wikkitikkitavi 0.20

wikkitikkitavi wikkitikkitavi 0.5

Exploits

source: wwwsecurityfocuscom/bid/3946/info WikkiTikkiTavi is a freely available engine for running a Wiki site Wiki sites are web communities which are based on the idea that every webpage is editable by users of the website WikkiTikkiTavi is back-ended by a MySQL database and runs on most Linux and Unix variants, as well as Microsoft Wi ...