PT-2022-20790 · Unknown · Php-Fusion

Published

2022-09-07

·

Updated

2022-09-12

·

CVE-2022-3152

CVSS v3.1

9.6

Critical

VectorAV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:N
Name of the Vulnerable Software and Affected Versions phpfusion/phpfusion versions prior to 9.10.20
Description The issue concerns an unverified password change in the GitHub repository phpfusion/phpfusion.
Recommendations For versions prior to 9.10.20, update to version 9.10.20 or later to resolve the issue.

Exploit

Fix

Improper Authentication

Weakness Enumeration

Related Identifiers

CVE-2022-3152

Affected Products

Php-Fusion