|
TikiWiki contains a flaw that may lead to an unauthorized information disclosure. The issue is triggered when a remote attacker calls the "tiki-list_file_gallery.php" script with abnormal parameters, which will disclose the physical path of the web server resulting in a loss of confidentiality.
|