In phpMyFAQ before 2.9.9, there is Cross-Site Request Forgery (CSRF) in admin/ajax.attachment.php and admin/att.main.php.
References
Link | Resource |
---|---|
https://github.com/thorsten/phpMyFAQ/commit/ef5a66df4bcfacc7573322af33ce10c30e0bb896 | Patch Third Party Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2022-10-03T16:23:34
Updated: 2022-10-03T16:23:34
Reserved: 2022-10-03T00:00:00
Link: CVE-2017-15733
JSON object: View
NVD Information
Status : Analyzed
Published: 2017-10-22T18:29:00.527
Modified: 2017-10-24T15:09:29.957
Link: CVE-2017-15733
JSON object: View
Redhat Information
No data.
CWE