Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-83076
HistoryNov 02, 2023 - 12:00 a.m.

phpMyFAQ Access Control Error Vulnerability

2023-11-0200:00:00
China National Vulnerability Database
www.cnvd.org.cn
7
phpmyfaq
multi-language
faq system
access control
vulnerability
session expiration
old sessions
attack

AI Score

6.5

Confidence

Low

EPSS

0.001

Percentile

37.4%

phpMyFAQ is a multi-language, fully database-driven FAQ system. An access control error vulnerability exists in versions prior to phpMyFAQ 3.2.2, which stems from the presence of insufficient session expiration. An attacker can exploit this vulnerability to still use old sessions.

AI Score

6.5

Confidence

Low

EPSS

0.001

Percentile

37.4%