CVE-2017-15735: CSRF
Published Oct 21, 2017
·Updated
In phpMyFAQ before 2.9.9, there is Cross-Site Request Forgery (CSRF) for modifying a glossary.
Affected Software
1 affected component
PhpMyFaq phpmyfaq<=2.9.8
Remediation
Event History
Oct 21, 2017
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Dec 3, 2025
Exploit Published
12:00 AM
Known Exploited
07:13 PM
Frequently Asked Questions
1
What is the severity of CVE-2017-15735?
CVE-2017-15735 is classified as a moderate severity vulnerability due to its potential for exploitation through Cross-Site Request Forgery.
2
How do I fix CVE-2017-15735?
To fix CVE-2017-15735, update phpMyFAQ to version 2.9.9 or later to mitigate the CSRF vulnerability.
3
What are the affected versions of phpMyFAQ for CVE-2017-15735?
CVE-2017-15735 affects phpMyFAQ versions prior to 2.9.9, including all versions up to and including 2.9.8.
4
What type of vulnerability is CVE-2017-15735?
CVE-2017-15735 is a Cross-Site Request Forgery (CSRF) vulnerability.
5
What actions can be exploited through CVE-2017-15735?
CVE-2017-15735 can be exploited to modify a glossary in phpMyFAQ without proper user authorization.