CVE Database
/

CVE-2016-9889

Back to search

CVE-2016-9889

Published: Dec 23, 2016

Modified: Aug 6, 2024

PUBLISHED

Description

Some forms with the parameter geo_zoomlevel_to_found_location in Tiki Wiki CMS 12.x before 12.10 LTS, 15.x before 15.3 LTS, and 16.x before 16.1 don't have the input sanitized, related to tiki-setup.php and article_image.php. The impact is XSS.

VendorProductVersions

n/a

n/a

affected
n/a

References

95083
vdb-entry
x_refsource_BID
1037531
vdb-entry
x_refsource_SECTRACK

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now