Vulnerabilities > CVE-2007-2613 - Remote Security vulnerability in WikkaWiki

047910
CVSS 8.3 - HIGH
Attack vector
ADJACENT_NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
low complexity
wikkawiki

Summary

WikkaWiki (Wikka Wiki) before 1.1.6.3 allows attackers in a shared virtual host server environment to upload and execute an arbitrary configuration file by modifying the WAKKA_CONFIG environment variable. The vendor has addressed this issue through a product update: http://www.wikkawiki.org/downloads/

Vulnerable Configurations

Part Description Count
Application
Wikkawiki
1