CVE-2017-15732: CSRF
Published Oct 21, 2017
·Updated
In phpMyFAQ before 2.9.9, there is Cross-Site Request Forgery (CSRF) in admin/news.php.
Affected Software
1 affected component
PhpMyFaq phpmyfaq<=2.9.8
Remediation
Event History
Oct 21, 2017
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-15732?
CVE-2017-15732 has a medium severity rating due to its nature as a Cross-Site Request Forgery (CSRF) vulnerability.
2
How do I fix CVE-2017-15732?
To fix CVE-2017-15732, upgrade to phpMyFAQ version 2.9.9 or later.
3
What software is affected by CVE-2017-15732?
CVE-2017-15732 affects phpMyFAQ versions up to and including 2.9.8.
4
What type of vulnerability is CVE-2017-15732?
CVE-2017-15732 is classified as a Cross-Site Request Forgery (CSRF) vulnerability.
5
In which component of phpMyFAQ does CVE-2017-15732 exist?
CVE-2017-15732 exists in the admin/news.php component of phpMyFAQ.