CRITICAL
Weak Password Requirements in thorsten/phpmyfaq
Published Jan 15, 2023
9.8
CRITICALCVSS 3.1
EPSS 0.64%
Description
Weak Password Requirements in GitHub repository thorsten/phpmyfaq prior to 3.1.10.
Affected products
-
Affected
- ≥ unspecified, < 3.1.10
Default status is the baseline for the product. Each version can override it (patched versions can be marked unaffected).
| Vendor | Product | Default status | Versions |
|---|---|---|---|
| Thorsten | Thorsten/phpmyfaq | unknown | Affected
|
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (5)
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2023-0330 Advisory
- https://github.com/advisories/GHSA-4p88-cfhq-f3vg Advisory
- https://github.com/thorsten/phpmyfaq/commit/8beed2fca5b0b82c6ba866d0ffd286d0c1fbf596 PatchThird Party Advisory
- https://huntr.dev/bounties/fac01e9f-e3e5-4985-94ad-59a76485f215 Permissions RequiredThird Party Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2023-0307
| Link | Providers | Tags |
|---|---|---|
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2023-0330 | Advisory | |
| https://github.com/advisories/GHSA-4p88-cfhq-f3vg | Advisory | |
| https://github.com/thorsten/phpmyfaq/commit/8beed2fca5b0b82c6ba866d0ffd286d0c1fbf596 | PatchThird Party Advisory | |
| https://huntr.dev/bounties/fac01e9f-e3e5-4985-94ad-59a76485f215 | Permissions RequiredThird Party Advisory | |
| https://nvd.nist.gov/vuln/detail/CVE-2023-0307 |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner @huntrdev
Published Jan 15, 2023
Updated Apr 7, 2025
Reserved Jan 15, 2023
Link CVE-2023-0307
CISA Vulnrichment
Updated Apr 7, 2025
Red Hat
No data
GitHub
Link GHSA-4P88-CFHQ-F3VG