CVE-2006-4602
Unrestricted file upload vulnerability in jhot.php in TikiWiki 1.9.4 Sirius and earlier allows remote attackers to execute arbitrary PHP code via a filepath parameter that contains a filename with a .php extension, which is uploaded to the img/wiki/…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 43.7%, higher than 99% of all known CVEs. Patch or mitigate before the next change window.
Description
Unrestricted file upload vulnerability in jhot.php in TikiWiki 1.9.4 Sirius and earlier allows remote attackers to execute arbitrary PHP code via a filepath parameter that contains a filename with a .php extension, which is uploaded to the img/wiki/ directory.
- CVSS 2.0
- 7.5 HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
- EPSS
- 43.72% probability · 99th percentile
- CISA KEV
- Not listed
- Affected
- tiki/tikiwiki cms\/groupware
- Source
- cve@mitre.org
References
- http://isc.sans.org/diary.php?storyid=1672
- http://secunia.com/advisories/21733Vendor Advisory
- http://secunia.com/advisories/22100Vendor Advisory
- http://security.gentoo.org/glsa/glsa-200609-16.xml
- http://tikiwiki.org/tiki-read_article.php?articleId=136
- http://www.osvdb.org/28456
- http://www.securityfocus.com/bid/19819Exploit
- http://www.vupen.com/english/advisories/2006/3450Vendor Advisory
- https://www.exploit-db.com/exploits/2288
- http://isc.sans.org/diary.php?storyid=1672
- http://secunia.com/advisories/21733Vendor Advisory
- http://secunia.com/advisories/22100Vendor Advisory
- http://security.gentoo.org/glsa/glsa-200609-16.xml
- http://tikiwiki.org/tiki-read_article.php?articleId=136
- http://www.osvdb.org/28456
- http://www.securityfocus.com/bid/19819Exploit
- http://www.vupen.com/english/advisories/2006/3450Vendor Advisory
- https://www.exploit-db.com/exploits/2288
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.