phpmyfaq/phpmyfaq is vulnerable to cross-site request forgery (CSRF) attacks. The application does not have CSRF protection for the phpmyfaq/admin/stat.main.php
file, allowing a malicious user to send a request to the application to clear the visits value on the stat page.