CVE-2011-4551: XSS
Cross-site scripting (XSS) vulnerability in tiki-cookie-jar.php in TikiWiki CMS/Groupware before 8.2 and LTS before 6.5 allows remote attackers to inject arbitrary web script or HTML via arbitrary parameters.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-4551?
CVE-2011-4551 is considered a moderate severity vulnerability due to its potential for arbitrary script injection.
How do I fix CVE-2011-4551?
To fix CVE-2011-4551, upgrade to TikiWiki CMS/Groupware version 8.2 or later, or LTS version 6.5 or later.
What are the affected versions in CVE-2011-4551?
CVE-2011-4551 affects TikiWiki CMS/Groupware versions prior to 8.2 and LTS versions prior to 6.5.
Can CVE-2011-4551 be exploited remotely?
Yes, CVE-2011-4551 can be exploited by remote attackers through crafted HTTP requests.
What types of attacks can be performed using CVE-2011-4551?
CVE-2011-4551 allows attackers to perform cross-site scripting (XSS) attacks, potentially leading to session hijacking or other malicious actions.