Vulnerabilities > Phpmyfaq > Medium

DATE CVE VULNERABILITY TITLE RISK
2024-02-05 CVE-2024-22208 Incorrect Authorization vulnerability in PHPmyfaq
phpMyFAQ is an Open Source FAQ web application for PHP 8.1+ and MySQL, PostgreSQL and other databases.
network
low complexity
phpmyfaq CWE-863
6.5
2024-02-05 CVE-2024-24574 Improper Neutralization of Script-Related HTML Tags in a Web Page (Basic XSS) vulnerability in PHPmyfaq
phpMyFAQ is an open source FAQ web application for PHP 8.1+ and MySQL, PostgreSQL and other databases.
network
low complexity
phpmyfaq CWE-80
6.1
2024-02-05 CVE-2024-22202 Improper Access Control vulnerability in PHPmyfaq
phpMyFAQ is an open source FAQ web application for PHP 8.1+ and MySQL, PostgreSQL and other databases.
network
low complexity
phpmyfaq CWE-284
6.5
2023-12-16 CVE-2023-6889 Cross-site Scripting vulnerability in PHPmyfaq
Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.17.
network
low complexity
phpmyfaq CWE-79
5.4
2023-12-16 CVE-2023-6890 Cross-site Scripting vulnerability in PHPmyfaq
Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.1.17.
network
low complexity
phpmyfaq CWE-79
5.4
2023-10-31 CVE-2023-5863 Cross-site Scripting vulnerability in PHPmyfaq
Cross-site Scripting (XSS) - Reflected in GitHub repository thorsten/phpmyfaq prior to 3.2.2.
network
low complexity
phpmyfaq CWE-79
6.1
2023-10-31 CVE-2023-5864 Cross-site Scripting vulnerability in PHPmyfaq
Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.2.1.
network
low complexity
phpmyfaq CWE-79
4.8
2023-10-31 CVE-2023-5866 Sensitive Cookie in HTTPS Session Without 'Secure' Attribute vulnerability in PHPmyfaq
Sensitive Cookie in HTTPS Session Without 'Secure' Attribute in GitHub repository thorsten/phpmyfaq prior to 3.2.1.
network
low complexity
phpmyfaq CWE-614
5.7
2023-10-31 CVE-2023-5867 Cross-site Scripting vulnerability in PHPmyfaq
Cross-site Scripting (XSS) - Stored in GitHub repository thorsten/phpmyfaq prior to 3.2.2.
network
low complexity
phpmyfaq CWE-79
5.4
2023-09-30 CVE-2023-5316 Cross-site Scripting vulnerability in PHPmyfaq
Cross-site Scripting (XSS) - DOM in GitHub repository thorsten/phpmyfaq prior to 3.1.18.
network
low complexity
phpmyfaq CWE-79
6.1