CVE-2017-11187: Critical severity phpmyfaq vulnerability
Published Jul 12, 2017
·Updated
phpMyFAQ before 2.9.8 does not properly mitigate brute-force attacks that try many passwords in attempted logins quickly.
Affected Software
1 affected component
PhpMyFaq phpmyfaq<=2.9.7
Event History
Jul 12, 2017
CVE Published
via MITRE·02:00 PM
Data Sourced
via MITRE·02:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-11187?
CVE-2017-11187 has been rated as a medium severity vulnerability.
2
How do I fix CVE-2017-11187?
To fix CVE-2017-11187, update phpMyFAQ to version 2.9.8 or later.
3
What type of attack does CVE-2017-11187 expose phpMyFAQ to?
CVE-2017-11187 exposes phpMyFAQ to brute-force attacks targeting login attempts.
4
Which versions of phpMyFAQ are affected by CVE-2017-11187?
CVE-2017-11187 affects phpMyFAQ versions prior to 2.9.8.
5
Is there a security advisory for CVE-2017-11187?
Yes, a security advisory detailing CVE-2017-11187 can be found on the phpMyFAQ website.