Tiki through 27.0 allows users who have certain permissions to insert a "Modules" (aka tiki-admin_modules.php) stored XSS payload in the Name.
2024-10-28T23:15:02.907
2025-06-03T14:57:28.683
Analyzed
[email protected]
CVSSv3.1: 4.8 (MEDIUM)