CVE-2007-5682: High severity Tiki Wiki CMS Groupware vulnerability
Incomplete blacklist vulnerability in tiki-graphformula.php in TikiWiki before 1.9.8.2 allows remote attackers to execute arbitrary code by using variable functions and variable variables to write variables whose names match the whitelist, a different vulnerability than CVE-2007-5423.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2007-5682?
CVE-2007-5682 has been rated as a high severity vulnerability due to its potential for arbitrary code execution.
How do I fix CVE-2007-5682?
Fix CVE-2007-5682 by upgrading TikiWiki to version 1.9.8.2 or later, which addresses this vulnerability.
What versions of TikiWiki are affected by CVE-2007-5682?
CVE-2007-5682 affects TikiWiki versions 1.9.0 through 1.9.8.1, as well as specific earlier versions.
Can CVE-2007-5682 be exploited remotely?
Yes, CVE-2007-5682 can be exploited remotely by attackers to execute arbitrary code.
What type of vulnerability is CVE-2007-5682?
CVE-2007-5682 is classified as an incomplete blacklist vulnerability.