Vulnerabilities (CVE)

Filtered by vendor Phpmyfaq Subscribe
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2023-6889 1 Phpmyfaq 1 Phpmyfaq 2023-12-19 N/A 5.4 MEDIUM
Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.17.
CVE-2023-6890 1 Phpmyfaq 1 Phpmyfaq 2023-12-19 N/A 5.4 MEDIUM
Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.17.
CVE-2023-1875 1 Phpmyfaq 1 Phpmyfaq 2023-12-18 N/A 5.4 MEDIUM
Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.12.
CVE-2023-1885 1 Phpmyfaq 1 Phpmyfaq 2023-12-18 N/A 5.4 MEDIUM
Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.12.
CVE-2023-1756 1 Phpmyfaq 1 Phpmyfaq 2023-12-18 N/A 5.4 MEDIUM
Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.12.
CVE-2023-1761 1 Phpmyfaq 1 Phpmyfaq 2023-12-18 N/A 5.4 MEDIUM
Cross-site Scripting in GitHub repository thorsten/phpmyfaq prior to 3.1.12.
CVE-2023-0880 1 Phpmyfaq 1 Phpmyfaq 2023-12-18 N/A 4.3 MEDIUM
Misinterpretation of Input in GitHub repository thorsten/phpmyfaq prior to 3.1.11.
CVE-2023-0792 1 Phpmyfaq 1 Phpmyfaq 2023-12-18 N/A 5.4 MEDIUM
Code Injection in GitHub repository thorsten/phpmyfaq prior to 3.1.11.
CVE-2023-0791 1 Phpmyfaq 1 Phpmyfaq 2023-12-18 N/A 5.4 MEDIUM
Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.11.
CVE-2023-0787 1 Phpmyfaq 1 Phpmyfaq 2023-12-18 N/A 5.4 MEDIUM
Cross-site Scripting (XSS) - Generic in GitHub repository thorsten/phpmyfaq prior to 3.1.11.
CVE-2023-0786 1 Phpmyfaq 1 Phpmyfaq 2023-12-18 N/A 4.8 MEDIUM
Cross-site Scripting (XSS) - Generic in GitHub repository thorsten/phpmyfaq prior to 3.1.11.
CVE-2023-0794 1 Phpmyfaq 1 Phpmyfaq 2023-12-18 N/A 5.4 MEDIUM
Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.11.
CVE-2023-4007 1 Phpmyfaq 1 Phpmyfaq 2023-08-03 N/A 5.4 MEDIUM
Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.16.
CVE-2017-15727 1 Phpmyfaq 1 Phpmyfaq 2019-03-14 3.5 LOW 5.4 MEDIUM
In phpMyFAQ before 2.9.9, there is Stored Cross-site Scripting (XSS) via an HTML attachment.
CVE-2014-6050 1 Phpmyfaq 1 Phpmyfaq 2018-10-23 5.0 MEDIUM 5.3 MEDIUM
phpMyFAQ before 2.8.13 allows remote attackers to bypass the CAPTCHA protection mechanism by replaying the request.
CVE-2014-6048 1 Phpmyfaq 1 Phpmyfaq 2018-10-23 5.0 MEDIUM 5.3 MEDIUM
phpMyFAQ before 2.8.13 allows remote attackers to read arbitrary attachments via a direct request.
CVE-2014-6047 1 Phpmyfaq 1 Phpmyfaq 2018-10-23 5.0 MEDIUM 5.3 MEDIUM
phpMyFAQ before 2.8.13 allows remote authenticated users with certain permissions to read arbitrary attachments by leveraging incorrect "download an attachment" permission checks.
CVE-2017-15809 1 Phpmyfaq 1 Phpmyfaq 2017-10-25 4.3 MEDIUM 6.1 MEDIUM
In phpMyFaq before 2.9.9, there is XSS in admin/tags.main.php via a crafted tag.
CVE-2017-15728 1 Phpmyfaq 1 Phpmyfaq 2017-10-24 3.5 LOW 4.8 MEDIUM
In phpMyFAQ before 2.9.9, there is Stored Cross-site Scripting (XSS) via metaDescription or metaKeywords.
CVE-2017-14618 1 Phpmyfaq 1 Phpmyfaq 2017-10-23 3.5 LOW 4.8 MEDIUM
Cross-site scripting (XSS) vulnerability in inc/PMF/Faq.php in phpMyFAQ through 2.9.8 allows remote attackers to inject arbitrary web script or HTML via the Questions field in an "Add New FAQ" action.
CVE-2017-14619 1 Phpmyfaq 1 Phpmyfaq 2017-10-23 4.3 MEDIUM 6.1 MEDIUM
Cross-site scripting (XSS) vulnerability in phpMyFAQ through 2.9.8 allows remote attackers to inject arbitrary web script or HTML via the "Title of your FAQ" field in the Configuration Module.
CVE-2017-7579 1 Phpmyfaq 1 Phpmyfaq 2017-04-12 4.3 MEDIUM 6.1 MEDIUM
inc/PMF/Faq.php in phpMyFAQ before 2.9.7 has XSS in the question field.