CVE-2005-0200: Input Validation
TikiWiki before 1.8.5 does not properly validate files that have been uploaded to the temp directory, which could allow remote attackers to upload and execute arbitrary PHP scripts, a different vulnerability than CVE-2004-1386.
Affected Software
Remediation
Patch Available
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2005-0200?
CVE-2005-0200 is classified as a high severity vulnerability due to the potential for remote code execution by attackers.
How do I fix CVE-2005-0200?
To fix CVE-2005-0200, upgrade to TikiWiki version 1.8.5 or later to ensure proper file validation.
What types of attacks can CVE-2005-0200 facilitate?
CVE-2005-0200 can facilitate remote attacks that allow unauthorized users to upload and execute arbitrary PHP scripts.
What versions of TikiWiki are affected by CVE-2005-0200?
TikiWiki versions prior to 1.8.5, including 1.6.1 and earlier, are affected by CVE-2005-0200.
Is CVE-2005-0200 specific to any particular operating system?
CVE-2005-0200 is not specific to any operating system; it affects the TikiWiki application regardless of the underlying operating system.