CVE-2007-4554

Cross-site scripting (XSS) vulnerability in tiki-remind_password.php in Tikiwiki (aka Tiki CMS/Groupware) 1.9.7 allows remote attackers to inject arbitrary web script or HTML via the username parameter. NOTE: this issue might be related to CVE-2006-2635.7.
Configurations

Configuration 1

cpe:2.3:a:tiki:tikiwiki_cms/groupware:1.9.7:*:*:*:*:*:*:*

Information

Published : 2007-08-28 12:17

Updated : 2018-10-15 09:36


NVD link : CVE-2007-4554

Mitre link : CVE-2007-4554

Products Affected
No products.
CWE