phpMyFAQ 4.1.6 之前的版本中存在一个权限提升漏洞,位于 GroupController::updateMembers() 方法中。该漏洞允许仅具有群组管理权限的管理员绕过所需权限的验证,加入高权限群组。攻击者可以将自身添加到已存在的、拥有用户管理权限的群组中,从而立即继承这些权限,进而修改或删除用户账户。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-66398 | 9.4 CRITICAL | phpMyFAQ before 4.1.6 Remote Code Execution via Configuration API |
| CVE-2026-66397 | 8.6 HIGH | phpMyFAQ before 4.1.6 Path Traversal via category image deletion |
No comments yet