PoC Index

CVE-2012-3996

MEDIUM 5.0EPSS 4.6%

TikiWiki CMS/Groupware 8.3 and earlier allows remote attackers to obtain the installation path via a direct request to (1) admin/include_calendar.php, (2) tiki-rss_error.php, or (3) tiki-watershed_service.php.

CVSS v2.0
5.0 MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
EPSS
4.59% chance of exploitation in the next 30 days, 91th percentile
Published
2012-07-12
Updated
2024-09-17

Proof-of-concept exploits (2)

ExploitDB entries (2)

References

Related