4.3
CVSSv2

CVE-2017-9145

Published: 26/06/2017 Updated: 05/07/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
CVSS v3 Base Score: 6.1 | Impact Score: 2.7 | Exploitability Score: 2.8
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

TikiFilter.php in Tiki Wiki CMS Groupware 12.x up to and including 16.x does not properly validate the imgsize or lang parameter to prevent XSS.

Vulnerable Product Search on Vulmon Subscribe to Product

tiki tikiwiki cms\\/groupware 12.4

tiki tikiwiki cms\\/groupware 12.5

tiki tikiwiki cms\\/groupware 12.6

tiki tikiwiki cms\\/groupware 12.7

tiki tikiwiki cms\\/groupware 16.0

tiki tikiwiki cms\\/groupware 16.1

tiki tikiwiki cms\\/groupware 16.2

tiki tikiwiki cms\\/groupware 13.2

tiki tikiwiki cms\\/groupware 14.1

tiki tikiwiki cms\\/groupware 15.0

tiki tikiwiki cms\\/groupware 14.0

tiki tikiwiki cms\\/groupware 12.0

tiki tikiwiki cms\\/groupware 12.2

tiki tikiwiki cms\\/groupware 12.9

tiki tikiwiki cms\\/groupware 13.1

tiki tikiwiki cms\\/groupware 15.1

tiki tikiwiki cms\\/groupware 15.3

tiki tikiwiki cms\\/groupware 12.1

tiki tikiwiki cms\\/groupware 12.3

tiki tikiwiki cms\\/groupware 12.8

tiki tikiwiki cms\\/groupware 13.0

tiki tikiwiki cms\\/groupware 15.2

tiki tikiwiki cms\\/groupware 15.4