CVE-2005-3048
- EPSS 3.58%
- Veröffentlicht 24.09.2005 00:03:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Directory traversal vulnerability in index.php in PhpMyFaq 1.5.1 allows remote attackers to read arbitrary files or include arbitrary PHP files via a .. (dot dot) in the LANGCODE parameter, which also allows direct code injection via the User Agent f...
- EPSS 0.72%
- Veröffentlicht 24.09.2005 00:03:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
PhpMyFaq 1.5.1 stores data files under the web document root with insufficient access control and predictable filenames, which allows remote attackers to obtain sensitive information via a direct request to the data/tracking[DATE] file.
- EPSS 0.41%
- Veröffentlicht 24.09.2005 00:03:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
PhpMyFaq 1.5.1 allows remote attackers to obtain sensitive information via a LANGCODE parameter that does not exist, which reveals the path in an error message.
- EPSS 0.26%
- Veröffentlicht 07.03.2005 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
SQL injection vulnerability in phpMyFAQ 1.4 and 1.5 allows remote attackers to add FAQ records to the database via the username field in forum messages.
CVE-2004-2255
- EPSS 4.75%
- Veröffentlicht 31.12.2004 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
Directory traversal vulnerability in phpMyFAQ 1.3.12 allows remote attackers to read arbitrary files, and possibly execute local PHP files, via the action variable, which is used as part of a template filename.
- EPSS 1.33%
- Veröffentlicht 31.12.2004 05:00:00
- Zuletzt bearbeitet 03.04.2025 01:03:51
phpMyFAQ 1.4.0 allows remote attackers to access the Image Manager to upload or delete images without authorization via a direct request.