CVE-2012-5321: Tiki Tikiwiki Cms/groupware

Medium severity, CVSS 5.8. EPSS: 13.8% chance of exploitation in the next 30 days.

tiki-featured_link.php in TikiWiki CMS/Groupware 8.3 allows remote attackers to load arbitrary web site pages into frames and conduct phishing attacks via the url parameter, aka "frame injection."

Affected products

  • Tiki Tikiwiki Cms/groupware: version 8.3 only

Published 2012-10-08. Last modified 2026-06-16.