CVE-2011-4336
38Vexday Risk Score
Patch soon. It has a working public exploit.
ssvc Attendepss 7.7%
from disclosure to weapon0 days
Published on NVDJan 15
1st PoCJul 20
exploitation probability
7.7%top 6% of all CVEs
observed exploitation
nono source reports it
1 public exploit(s)
Tiki Wiki CMS Groupware 7.0 has XSS via the GET "ajax" parameter to snarf_ajax.php.
Affected products
Tiki · Wiki CMS Groupwarepublic PoCs found — 1✓ VexDay Proof
exploitdb✓ VexDay Proofwww.exploit-db.com/exploits/35974⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.