CVE-2023-1886: Authentication Bypass by Capture-replay in thorsten/phpmyfaq
Published Apr 5, 2023
·Updated
Authentication Bypass by Capture-replay in GitHub repository thorsten/phpmyfaq prior to 3.1.12.
Affected Software
1 affected component
PhpMyFaq phpmyfaq<3.1.12
Remediation
Event History
Apr 5, 2023
CVE Published
12:00 AM
Data Sourced
12:00 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID of this authentication bypass vulnerability?
The vulnerability ID is CVE-2023-1886.
2
What is the severity of CVE-2023-1886?
The severity of CVE-2023-1886 is critical with a CVSS score of 9.8.
3
What is the affected software for CVE-2023-1886?
The affected software for CVE-2023-1886 is Phpmyfaq prior to version 3.1.12.
4
How can an attacker exploit this vulnerability?
An attacker can exploit this vulnerability by performing a capture-replay attack to bypass authentication.
5
How can I fix the authentication bypass vulnerability in Phpmyfaq?
To fix the authentication bypass vulnerability in Phpmyfaq, update to version 3.1.12 or later.