CVE-2010-1134
27.03.2010, 19:07
SQL injection vulnerability in the _find function in searchlib.php in TikiWiki CMS/Groupware 3.x before 3.5 allows remote attackers to execute arbitrary SQL commands via the $searchDate variable.
Vendor | Product | Version |
---|---|---|
tiki | tikiwiki_cms\/groupware | 3.0 |
tiki | tikiwiki_cms\/groupware | 3.1 |
tiki | tikiwiki_cms\/groupware | 3.2 |
tiki | tikiwiki_cms\/groupware | 3.3 |
tiki | tikiwiki_cms\/groupware | 3.4 |
𝑥
= Vulnerable software versions
References