PT-2020-14765 · Tiki · Tiki

Published

2020-08-03

·

Updated

2020-08-04

·

CVE-2020-16131

CVSS v3.1

6.1

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Name of the Vulnerable Software and Affected Versions Tiki versions prior to 21.2
Description The issue allows for XSS due to improper consideration of certain characters in the PreventXss.php file.
Recommendations For versions prior to 21.2, update to version 21.2 or later to resolve the issue.

Fix

XSS

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-16131

Affected Products

Tiki