TikiWiki.Sort.Mode.Parameter.Information.Disclosure

description-logoDescription

This indicates an attack attempt against an information-disclosure vulnerability
in TikiWiki.
A vulnerability has been reported in TikiWiki that may allow an attacker to get private information on a vulnerable system. This is possible because the user input filters fail to properly sanitize the sort_mode parameter value that is passed to "tiki-lastchanges.php".

affected-products-logoAffected Products

Tikiwiki version 1.9.5

Impact logoImpact

Information Disclosure

recomended-action-logoRecommended Actions

Currently we are not aware of any officially supplied patches for this issue.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)