OS Command Injection Vulnerability in Tiki Wiki CMS
CVE-2024-47919
9.8CRITICAL
What is CVE-2024-47919?
An OS command injection vulnerability exists in Tiki Wiki CMS due to improper neutralization of special elements used in OS commands. This weakness allows malicious actors to manipulate system commands, potentially leading to unauthorized access, data breaches, or even complete system compromise. Attackers can exploit this vulnerability by injecting commands through user inputs, putting installations of Tiki Wiki CMS at significant risk. Regular updates and vulnerability assessments are essential to safeguard against such exploits.
Affected Version(s)
CMS All versions