CVE-2014-6047
phpMyFAQ before 2.8.13 allows remote authenticated users with certain permissions to read arbitrary attachments by lever
phpMyFAQ before 2.8.13 allows remote authenticated users with certain permissions to read arbitrary attachments by leveraging incorrect "download an attachment" permission checks.
MEDIUM · CVSS 5.3
EPSS 0.04672
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0