CVE-2016-10143: Tiki Tikiwiki Cms/groupware

High severity, CVSS 7.5. EPSS: 1.8% chance of exploitation in the next 30 days.

A vulnerability in Tiki Wiki CMS 15.2 could allow a remote attacker to read arbitrary files on a targeted system via a crafted pathname in a banner URL field.

Affected products

  • Tiki Tikiwiki Cms/groupware: version 15.2 only

Published 2017-01-20. Last modified 2026-06-17.