MEDIUM
Cross-site scripting (XSS) vulnerability in phpMyFAQ before 2.8.6 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors
Published Feb 14, 2014
4.3
MEDIUMCVSS 2.0
EPSS 1.95%
Description
Cross-site scripting (XSS) vulnerability in phpMyFAQ before 2.8.6 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
Affected products
No data.
OR
- ≤ 2.8.5
- 1.0
- 1.0.1
- 1.0.1a
- 1.1.0
- 1.1.1
- 1.1.2
- 1.1.3
- 1.1.4
- 1.1.4a
- 1.1.5
- 1.2.0
- 1.2.1
- 1.2.2
- 1.2.3
- 1.2.4
- 1.2.5
- 1.2.5a
- 1.2.5b
- 1.3.0
- 1.3.1
- 1.3.2
- 1.3.3
- 1.3.4
- 1.3.5
- 1.3.6
- 1.3.7
- 1.3.8
- 1.3.9
- 1.3.9
- 1.3.10
- 1.3.11
- 1.3.12
- 1.3.13
- 1.3.14
- 1.4
- 1.4
- 1.4
- 1.4.0
- 1.4.0a
- 1.4.1
- 1.4.2
- 1.4.3
- 1.4.4
- 1.4.5
- 1.4.6
- 1.4.7
- 1.4.8
- 1.4.9
- 1.4.10
- 1.4.11
- 1.5
- 1.5
- 1.5
- 1.5
- 1.5
- 1.5
- 1.5
- 1.5
- 1.5
- 1.5
- 1.5
- 1.5.0
- 1.5.1
- 1.5.2
- 1.5.3
- 1.5.4
- 1.5.5
- 1.5.6
- 1.5.7
- 1.5.8
- 1.5.9
- 1.6.0
- 1.6.1
- 1.6.2
- 1.6.3
- 1.6.4
- 1.6.5
- 1.6.6
- 1.6.7
- 1.6.8
- 1.6.9
- 1.6.10
- 1.6.11
- 1.6.12
- 2.0.0
- 2.0.1
- 2.0.2
- 2.0.3
- 2.0.4
- 2.0.5
- 2.0.6
- 2.0.7
- 2.0.8
- 2.0.9
- 2.0.10
- 2.0.11
- 2.0.12
- 2.0.13
- 2.0.14
- 2.0.15
- 2.0.16
- 2.0.17
- 2.5.0
- 2.5.1
- 2.5.2
- 2.5.3
- 2.5.4
- 2.5.5
- 2.5.6
- 2.5.7
- 2.6.0
- 2.6.1
- 2.6.2
- 2.6.3
- 2.6.4
- 2.6.5
- 2.6.6
- 2.6.7
- 2.6.8
- 2.6.9
- 2.6.10
- 2.6.11
- 2.6.12
- 2.6.13
- 2.6.14
- 2.6.15
- 2.6.16
- 2.6.17
- 2.6.18
- 2.7.0
- 2.7.1
- 2.7.2
- 2.7.3
- 2.7.4
- 2.7.5
- 2.7.6
- 2.7.7
- 2.7.8
- 2.7.9
- 2.8.0
- 2.8.1
- 2.8.2
- 2.8.3
- 2.8.4
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (6)
- http://jvn.jp/en/jp/JVN30050348/index.html third-party-advisoryx_refsource_JVN
- http://jvndb.jvn.jp/jvndb/JVNDB-2014-000015 third-party-advisoryx_refsource_JVNDB
- http://osvdb.org/102940 vdb-entryx_refsource_OSVDB
- http://secunia.com/advisories/56006 third-party-advisoryx_refsource_SECUNIA
- http://www.phpmyfaq.de/advisory_2014-02-04.php x_refsource_CONFIRMPatchVendor Advisory
- http://www.securityfocus.com/bid/65368 vdb-entryx_refsource_BID
| Link | Providers | Tags |
|---|---|---|
| http://jvn.jp/en/jp/JVN30050348/index.html | third-party-advisoryx_refsource_JVN | |
| http://jvndb.jvn.jp/jvndb/JVNDB-2014-000015 | third-party-advisoryx_refsource_JVNDB | |
| http://osvdb.org/102940 | vdb-entryx_refsource_OSVDB | |
| http://secunia.com/advisories/56006 | third-party-advisoryx_refsource_SECUNIA | |
| http://www.phpmyfaq.de/advisory_2014-02-04.php | x_refsource_CONFIRMPatchVendor Advisory | |
| http://www.securityfocus.com/bid/65368 | vdb-entryx_refsource_BID |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner jpcert
Published Feb 14, 2014
Updated Aug 6, 2024
Reserved Jan 6, 2014
Link CVE-2014-0814
CISA Vulnrichment
Updated n/a