Tiki Wiki CMS Groupware <= 8.3 Multiple Path Disclosure Weaknesses

Description:

TikiWiki CMS/Groupware 8.3 and earlier allows remote attackers to obtain the installation path via a direct request to (1) admin/include_calendar.php, (2) tiki-rss_error.php, or (3) tiki-watershed_service.php.

References:

Disclosure Date:

July 4, 2012