Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2020-15906

tiki-login.php in Tiki before 21.2 sets the admin password to a blank value after 50 invalid login attempts.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.911
EPSS Ranking 99.6%
CVSS Severity
CVSS v3 Score 9.8
CVSS v2 Score 7.5
Products affected by CVE-2020-15906
  • Tiki » Tiki » Version: 16.3
    cpe:2.3:a:tiki:tiki:16.3
  • Tiki » Tiki » Version: 16.4
    cpe:2.3:a:tiki:tiki:16.4
  • Tiki » Tiki » Version: 17.1
    cpe:2.3:a:tiki:tiki:17.1
  • Tiki » Tiki » Version: 17.3
    cpe:2.3:a:tiki:tiki:17.3
  • Tiki » Tiki » Version: 18.10
    cpe:2.3:a:tiki:tiki:18.10
  • Tiki » Tiki » Version: 18.11
    cpe:2.3:a:tiki:tiki:18.11
  • Tiki » Tiki » Version: 18.12
    cpe:2.3:a:tiki:tiki:18.12
  • Tiki » Tiki » Version: 18.4
    cpe:2.3:a:tiki:tiki:18.4
  • Tiki » Tiki » Version: 18.7
    cpe:2.3:a:tiki:tiki:18.7
  • Tiki » Tiki » Version: 18.8
    cpe:2.3:a:tiki:tiki:18.8
  • Tiki » Tiki » Version: 18.9
    cpe:2.3:a:tiki:tiki:18.9
  • Tiki » Tiki » Version: 19.2
    cpe:2.3:a:tiki:tiki:19.2
  • Tiki » Tiki » Version: 19.3
    cpe:2.3:a:tiki:tiki:19.3
  • Tiki » Tiki » Version: 20.4
    cpe:2.3:a:tiki:tiki:20.4
  • Tiki » Tiki » Version: 21.0
    cpe:2.3:a:tiki:tiki:21.0
  • Tiki » Tiki » Version: 21.1
    cpe:2.3:a:tiki:tiki:21.1


Contact Us

Shodan ® - All rights reserved