FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

phpmyfaq -- multiple vulnerabilities

Affected packages
phpmyfaq-php81 < 3.2.5
phpmyfaq-php82 < 3.2.5
phpmyfaq-php83 < 3.2.5

Details

VuXML ID cbfc1591-c8c0-11ee-b45a-589cfc0f81b0
Discovery 2024-02-05
Entry 2024-02-11

phpMyFAQ team reports:

phpMyFAQ doesn't implement sufficient checks to avoid XSS when storing on attachments filenames. The 'sharing FAQ' functionality allows any unauthenticated actor to misuse the phpMyFAQ application to send arbitrary emails to a large range of targets. phpMyFAQ's user removal page allows an attacker to spoof another user's detail, and in turn make a compelling phishing case for removing another user's account.

References

URL https://github.com/thorsten/phpMyFAQ/security/advisories/GHSA-6648-6g96-mg35
URL https://github.com/thorsten/phpMyFAQ/security/advisories/GHSA-7m8g-fprr-47fx
URL https://github.com/thorsten/phpMyFAQ/security/advisories/GHSA-9hhf-xmcw-r3xg