MEDIUM
lib/core/TikiFilter/PreventXss.php in Tiki Wiki CMS Groupware 16.2 allows remote attackers to bypass the XSS filter via padded zero characters, as demonstrated by an attack on tiki-batch_send_newsletter.php
Published May 31, 2017
6.1
MEDIUMCVSS 3.0
EPSS 0.95%
Description
Affected products
Remediation
Metrics
References (2)
Change history (0)
No recorded changes yet.