Published: 2020/07/28  Last Updated: 2020/07/28

Information from kujirahand

Vulnerability ID:JVN#48194211
Title:Multiple vulnerabilities in KonaWiki2 and KonaWiki3

This is a statement from the vendor itself with no modification by JPCERT/CC.

[1] KonaWiki 2.x and 3.0.x allows XSS, especially use invalid Wiki name.
[2] KonaWiki 3.0.0 to 3.1.0 allows Directories traversal.

[1] and [2] already fixed this problem.