Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1359 CNY

100%

CVE-2024-22202— User Removal Page Allows Spoofing Of User Details

Quick assessment

Affected
thorsten phpMyFAQ
Exploitation
No confirmed in-the-wild exploitation; assess based on exposure
Recommended action
Check the vendor advisory and references for a fixed version. If immediate upgrade is impossible, restrict exposure and increase monitoring.

phpMyFAQ是Thorsten Rinne个人开发者的一个多语言、完全由数据库驱动的常见问题解答系统。 phpMyFAQ 3.2.5之前版本存在访问控制错误漏洞,该漏洞源于用户删除页面允许攻击者欺骗另一个用户的详细信息,从而制造一个引人注目的网络钓鱼案例来删除另一个用户的帐户。

CVSS 5.7 · Medium EPSS 0.59% · P46

Possible ATT&CK Techniques 2 AI

T1434 T1134 · Access Token Manipulation
Get alerts for future matching vulnerabilities Log in to subscribe

I. Basic Information for CVE-2024-22202

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
User Removal Page Allows Spoofing Of User Details
Source: CVE Program / CVE List V5
Vulnerability Description
phpMyFAQ is an open source FAQ web application for PHP 8.1+ and MySQL, PostgreSQL and other databases. phpMyFAQ's user removal page allows an attacker to spoof another user's detail, and in turn make a compelling phishing case for removing another user's account. The front-end of this page doesn't allow changing the form details, an attacker can utilize a proxy to intercept this request and submit other data. Upon submitting this form, an email is sent to the administrator informing them that this user wants to delete their account. An administrator has no way of telling the difference between the actual user wishing to delete their account or the attacker issuing this for an account they do not control. This issue has been patched in version 3.2.5.
Source: CVE Program / CVE List V5
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:H
Source: CVE Program / CVE List V5
Vulnerability Type
访问控制不恰当
Source: CVE Program / CVE List V5
Vulnerability Title
phpMyFAQ 访问控制错误漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
phpMyFAQ是Thorsten Rinne个人开发者的一个多语言、完全由数据库驱动的常见问题解答系统。 phpMyFAQ 3.2.5之前版本存在访问控制错误漏洞,该漏洞源于用户删除页面允许攻击者欺骗另一个用户的详细信息,从而制造一个引人注目的网络钓鱼案例来删除另一个用户的帐户。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

Vendor Product Affected Versions CPE Subscribe
thorsten phpMyFAQ < 3.2.5 -

II. Public POCs for CVE-2024-22202

# POC Description Source Link Shenlong Link
AI-Generated POC Premium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2024-22202

请登录查看更多情报信息。

Patches & Fixes for CVE-2024-22202 (1)

Vendor Advisories for CVE-2024-22202 (1)

Same Patch Batch · thorsten · 2024-02-05 · 3 CVEs total

CVE-2024-22208 6.5 MEDIUM phpMyFAQ sharing FAQ functionality can easily be abused for phishing purposes
CVE-2024-24574 6.5 MEDIUM phpMyFAQ vulnerable to stored XSS on attachments filename

IV. Related Vulnerabilities

V. Comments for CVE-2024-22202

No comments yet


Leave a comment