TikiWiki prior to 1.8.5 does not properly validate files that have been uploaded to the temp directory, which could allow remote malicious users to upload and execute arbitrary PHP scripts, a different vulnerability than CVE-2004-1386.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
tiki tikiwiki cms\\/groupware |