CVE-2025-34113 | Tiki Wiki CMS Groupware up to 6.14/9.10 LTS/12.4 LTS/14.1 Calendar Module tiki-calendar.php viewmode missing authentication (EUVD-2025-21426 / EDB-39965)
A vulnerability classified as critical was found in Tiki Wiki CMS Groupware up to 6.14/9.10 LTS/12.4 LTS/14.1. Affected by this vulnerability is an unknown functionality of the file tiki-calendar.php of the component Calendar Module. The manipulation of the argument viewmode leads to missing authentication.
This vulnerability is known as CVE-2025-34113. The attack can be launched remotely. Furthermore, there is an exploit available.