First published: Mon Oct 23 2017(Updated: )
In phpMyFaq before 2.9.9, there is CSRF in admin/ajax.config.php.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
phpMyFAQ | <=2.9.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2017-15808 is classified as a medium severity vulnerability due to its potential for CSRF attacks.
To fix CVE-2017-15808, upgrade phpMyFaq to version 2.9.9 or later.
CVE-2017-15808 is a Cross-Site Request Forgery (CSRF) vulnerability.
phpMyFaq versions prior to 2.9.9, specifically up to 2.9.8, are affected by CVE-2017-15808.
The vulnerability in CVE-2017-15808 is related to the file admin/ajax.config.php.