← Back

CVE-2006-6168

nvd nist
Published: Nov 29, 2006Modified: Apr 23, 2026

JSON object

Loading...
7.5
Vector
AV:N/AC:L/Au:N/C:P/I:P/A:P
Exploitability: 10.0 / Impact: 6.4
Source: NVD

Description

tiki-register.php in TikiWiki before 1.9.7 allows remote attackers to trigger "notification-spam" via certain vectors such as a comma-separated list of addresses in the email field, related to lack of "a minimal check on email."

Affected (11)

1 product
Tikiwiki Cms/groupware
Configuration A
11 vulnerable
Vulnerable SoftwareAffected Versions
Tiki
Up to 1.9.6
Version 1.6.1
Version 1.9.0
Version 1.9.0 rc1
Version 1.9.0 rc2
Version 1.9.0 rc3
Version 1.9.1
Version 1.9.2
Version 1.9.3
Version 1.9.4
Version 1.9.5

Timeline

No history available yet.