Show filters
3 Total Results
Displaying 1-3 of 3
Sort by:
Attacker Value
Unknown
CVE-2009-4040
Disclosure Date: November 20, 2009 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in phpMyFAQ before 2.0.17 and 2.5.x before 2.5.2, when used with Internet Explorer 6 or 7, allows remote attackers to inject arbitrary web script or HTML via unspecified parameters to the search page.
0
Attacker Value
Unknown
CVE-2005-3734
Disclosure Date: November 22, 2005 (last updated February 22, 2025)
Cross-site scripting (XSS) vulnerability in the "add content" page in phpMyFAQ 1.5.3 and earlier allows remote attackers to inject arbitrary web script or HTML via the (1) thema, (2) username, and (3) usermail parameters.
0
Attacker Value
Unknown
CVE-2005-0702
Disclosure Date: March 07, 2005 (last updated February 22, 2025)
SQL injection vulnerability in phpMyFAQ 1.4 and 1.5 allows remote attackers to add FAQ records to the database via the username field in forum messages.
0