Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:37731
HistoryNov 01, 2022 - 5:49 a.m.

Authentication Bypass

2022-11-0105:49:14
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11
authentication bypass vulnerability
thorsten/phpmyfaq
password change restriction
software

EPSS

0.002

Percentile

57.1%

thorsten/phpmyfaq is vulnerable to authentication bypass. The vulnerability exists due to lack of restrictions in the password change function which allows an attacker to successfully update the password by changing one character.

EPSS

0.002

Percentile

57.1%