Vulnerability Details CVE-2024-51507
Tiki through 27.0 allows users who have certain permissions to insert a "Create/Edit External Wiki" stored XSS payload in the Name.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 10.9%
CVSS Severity
CVSS v3 Score 4.8
Products affected by CVE-2024-51507
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
cpe:2.3:a:tiki:tiki:18.10
-
cpe:2.3:a:tiki:tiki:18.11
-
cpe:2.3:a:tiki:tiki:18.12
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
cpe:2.3:a:tiki:tiki:21.10
-
cpe:2.3:a:tiki:tiki:21.11
-
cpe:2.3:a:tiki:tiki:21.12
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-
-