CVE-2006-4299

Publication date 23 August 2006

Last updated 17 July 2025


Ubuntu priority

Cross-site scripting (XSS) vulnerability in tiki-searchindex.php in TikiWiki 1.9.4 allows remote attackers to inject arbitrary web script or HTML via the highlight parameter. NOTE: the provenance of this information is unknown; the details are obtained from third party information.

Status

No maintained releases are affected by this CVE.

Package Ubuntu Release Status
tikiwiki 7.04 feisty
Fixed 1.9.7+dfsg-1ubuntu1
6.10 edgy Not in release
6.06 LTS dapper Not in release