First published: Fri Feb 16 2018(Updated: )
An XSS vulnerability (via an SVG image) in Tiki before 18 allows an authenticated user to gain administrator privileges if an administrator opens a wiki page with a malicious SVG image, related to lib/filegals/filegallib.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Tiki Tikiwiki Cms\/groupware | <18 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.