CVE-2004-2257: Medium severity PhpMyFaq phpmyfaq vulnerability
Published Dec 31, 2004
·Updated
phpMyFAQ 1.4.0 allows remote attackers to access the Image Manager to upload or delete images without authorization via a direct request.
Affected Software
1 affected component
PhpMyFaq phpmyfaq=1.4.0
Remediation
Patch Available
Patch Available
Patch Available
Event History
Dec 31, 2004
CVE Published
05:00 AM
Jul 17, 2005
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-2257?
CVE-2004-2257 is considered a critical vulnerability due to unauthorized access allowing image manipulation.
2
How do I fix CVE-2004-2257?
To fix CVE-2004-2257, upgrade phpMyFAQ to a version later than 1.4.0 that addresses this vulnerability.
3
Who is affected by CVE-2004-2257?
Users of phpMyFAQ version 1.4.0 are affected by CVE-2004-2257.
4
What can attackers do with CVE-2004-2257?
Attackers can exploit CVE-2004-2257 to upload or delete images through the Image Manager without authorization.
5
Is CVE-2004-2257 exploitable remotely?
Yes, CVE-2004-2257 is exploitable remotely, allowing attackers to access the vulnerable system from anywhere.