← Back

CVE-2006-6457

nvd nist
Published: Dec 11, 2006Modified: Apr 23, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:P/I:N/A:N
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

tiki-wiki_rss.php in Tikiwiki 1.9.5, 1.9.2, and possibly other versions allows remote attackers to obtain sensitive information (MySQL username and password) via an invalid (large or negative) ver parameter, which leaks the information in an error message.

Affected (2)

1 product
Tikiwiki Cms/groupware
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Tiki
Version 1.9.2
Version 1.9.5

Timeline

No history available yet.