This site is deprecated. Please
CLICK HERE for latest updates
Short Name |
HTTP:PHP:TIKIWIKI-JHOT
|
Severity |
Major
|
Recommended |
No
|
Recommended Action |
Drop
|
Category |
HTTP
|
Keywords |
TikiWiki Jhot Remote Command Execution
|
Release Date |
2009/09/15
|
Update Number |
1504
|
Supported Platforms |
idp-4.0+, isg-3.0+, j-series-9.5+, mx-11.4+, srx-12.1+, srx-branch-12.1+, vmx-17.4+, vsrx-12.1+, vsrx3bsd-18.2+
|
HTTP: TikiWiki Jhot Remote Command Execution
This signature detects attempts to exploit a known vulnerability against TikiWiki CRM/Groupware. A successful attack can lead to arbitrary code execution.
Extended Description
TikiWiki is prone to a remote command-execution vulnerability.
Attackers can exploit this issue to execute arbitrary system commands with the privileges of the webserver process.
TikiWiki 1.9.4 and prior versions are vulnerable to these issues; other versions may also be affected.
Affected Products
- Gentoo linux
- Tikiwiki_project tikiwiki 1.6.1
- Tikiwiki_project tikiwiki 1.7.1 .1
- Tikiwiki_project tikiwiki 1.7.2
- Tikiwiki_project tikiwiki 1.7.3
- Tikiwiki_project tikiwiki 1.7.4
- Tikiwiki_project tikiwiki 1.7.5
- Tikiwiki_project tikiwiki 1.7.6
- Tikiwiki_project tikiwiki 1.7.7
- Tikiwiki_project tikiwiki 1.7.8
- Tikiwiki_project tikiwiki 1.7.9
- Tikiwiki_project tikiwiki 1.8.0
- Tikiwiki_project tikiwiki 1.8.1
- Tikiwiki_project tikiwiki 1.8.2
- Tikiwiki_project tikiwiki 1.8.3
- Tikiwiki_project tikiwiki 1.8.4
- Tikiwiki_project tikiwiki 1.8.5
- Tikiwiki_project tikiwiki 1.9.0 -rc1
- Tikiwiki_project tikiwiki 1.9.0 -rc2
- Tikiwiki_project tikiwiki 1.9.0 -rc3
- Tikiwiki_project tikiwiki 1.9.0 -rc3.1
- Tikiwiki_project tikiwiki 1.9.1
- Tikiwiki_project tikiwiki 1.9.1 .1
- Tikiwiki_project tikiwiki 1.9.2
- Tikiwiki_project tikiwiki 1.9.3 1
- Tikiwiki_project tikiwiki 1.9.3.2
- Tikiwiki_project tikiwiki 1.9.4
References