Loading
In Tiki before 17.2, the user task component is vulnerable to a SQL Injection via the tiki-user_tasks.php show_history parameter.
Use CWE-89, Tiki vendor hub and Tikiwiki Cms\/Groupware product page to widen CVE-2018-20719 into its surrounding weakness, vendor, and product context.