CVE-2010-1134
27.03.2010, 19:07
SQL injection vulnerability in the _find function in searchlib.php in TikiWiki CMS/Groupware 3.x before 3.5 allows remote attackers to execute arbitrary SQL commands via the $searchDate variable.
| Vendor | Product | Version |
|---|---|---|
| tiki | tikiwiki_cms\/groupware | 3.0 |
| tiki | tikiwiki_cms\/groupware | 3.1 |
| tiki | tikiwiki_cms\/groupware | 3.2 |
| tiki | tikiwiki_cms\/groupware | 3.3 |
| tiki | tikiwiki_cms\/groupware | 3.4 |
𝑥
= Vulnerable software versions
References