Vulnerabilities
Vulnerable Software
Phpmyfaq:  >> Phpmyfaq  >> 2.6.11  Security Vulnerabilities
Static code injection vulnerability in inc/function.base.php in Ajax File and Image Manager before 1.1, as used in tinymce before 1.4.2, phpMyFAQ 2.6 before 2.6.19 and 2.7 before 2.7.1, and possibly other products, allows remote attackers to inject arbitrary PHP code into data.php via crafted parameters.
CVSS Score
7.5
EPSS Score
0.392
Published
2011-12-15
phpMyFAQ 2.6.11 and 2.6.12, as distributed between December 4th and December 15th 2010, contains an externally introduced modification (Trojan Horse) in the getTopTen method in inc/Faq.php, which allows remote attackers to execute arbitrary PHP code.
CVSS Score
7.5
EPSS Score
0.014
Published
2010-12-17


Contact Us

Shodan ® - All rights reserved