Vulnerabilities (CVE)

Filtered by vendor Phpmyfaq Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-1886 1 Phpmyfaq 1 Phpmyfaq 2023-12-18 N/A 9.8 CRITICAL
Authentication Bypass by Capture-replay in GitHub repository thorsten/phpmyfaq prior to 3.1.12.
CVE-2023-1753 1 Phpmyfaq 1 Phpmyfaq 2023-12-18 N/A 9.8 CRITICAL
Weak Password Requirements in GitHub repository thorsten/phpmyfaq prior to 3.1.12.
CVE-2023-0789 1 Phpmyfaq 1 Phpmyfaq 2023-12-18 N/A 9.8 CRITICAL
Command Injection in GitHub repository thorsten/phpmyfaq prior to 3.1.11.
CVE-2023-0788 1 Phpmyfaq 1 Phpmyfaq 2023-12-18 N/A 9.8 CRITICAL
Code Injection in GitHub repository thorsten/phpmyfaq prior to 3.1.11.
CVE-2023-5865 1 Phpmyfaq 1 Phpmyfaq 2023-11-09 N/A 9.8 CRITICAL
Insufficient Session Expiration in GitHub repository thorsten/phpmyfaq prior to 3.2.2.
CVE-2023-4006 1 Phpmyfaq 1 Phpmyfaq 2023-08-03 N/A 9.8 CRITICAL
Improper Neutralization of Formula Elements in a CSV File in GitHub repository thorsten/phpmyfaq prior to 3.1.16.
CVE-2017-11187 1 Phpmyfaq 1 Phpmyfaq 2019-10-03 5.0 MEDIUM 9.8 CRITICAL
phpMyFAQ before 2.9.8 does not properly mitigate brute-force attacks that try many passwords in attempted logins quickly.