Secunia Logo  


Secunia PSI WorldMap
 
CVE Reference: CVE-2004-1386
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2004-1386

Description:
TikiWiki before 1.8.4.1 does not properly verify uploaded images, which could allow remote attackers to upload and execute arbitrary PHP scripts, a different vulnerability than CVE-2005-0200.

CVE Status:
Candidate

References:

XF
  http://xforce.iss.net/xforce/xfdb/18691

ST
  1012700

OSVDB
  12628

GENTOO
  http://www.gentoo.org/security/en/glsa/glsa-200501-12.xml

CONFIRM
  http://tikiwiki.org/tiki-read_article.php?articleId=97

CIAC
  http://www.ciac.org/ciac/bulletins/p-084.shtml

BID
  12110


Return to the previous page.