9.8

CVE-2010-4239

Exploit
Tiki Wiki CMS Groupware 5.2 has Local File Inclusion
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
TikiTikiwiki Cms/groupware Version5.2
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 13.43% 0.959
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 9.8 3.9 5.9
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P
CWE-20 Improper Input Validation

The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.

https://access.redhat.com/security/cve/cve-2010-4239
Broken Link
https://dl.packetstormsecurity.net/1009-exploits/tikiwiki52-lfi.txt
Third Party Advisory
Exploit
https://security-tracker.debian.org/tracker/CVE-2010-4239
Third Party Advisory
Issue Tracking
https://www.openwall.com/lists/oss-security/2010/11/22/9
Third Party Advisory
Mailing List