First published: Wed Jul 12 2017(Updated: )
phpMyFAQ before 2.9.8 does not properly mitigate brute-force attacks that try many passwords in attempted logins quickly.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
phpMyFAQ | <=2.9.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-11187 has been rated as a medium severity vulnerability.
To fix CVE-2017-11187, update phpMyFAQ to version 2.9.8 or later.
CVE-2017-11187 exposes phpMyFAQ to brute-force attacks targeting login attempts.
CVE-2017-11187 affects phpMyFAQ versions prior to 2.9.8.
Yes, a security advisory detailing CVE-2017-11187 can be found on the phpMyFAQ website.