module
TikiWiki Information Disclosure
Disclosed | Created |
---|---|
Nov 1, 2006 | May 30, 2018 |
Disclosed
Nov 1, 2006
Created
May 30, 2018
Description
A vulnerability has been reported in Tikiwiki, which can be exploited by
an anonymous user to dump the MySQL user & passwd just by creating a mysql
error with the "sort_mode" var.
The vulnerability was reported in Tikiwiki version 1.9.5.
an anonymous user to dump the MySQL user & passwd just by creating a mysql
error with the "sort_mode" var.
The vulnerability was reported in Tikiwiki version 1.9.5.
Author
Matteo Cantoni goony@nothink.org
References
Module Options
To display the available options, load the module within the Metasploit console and run the commands 'show options' or 'show advanced':

NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.