PT-2026-64998 · Phpmyfaq · Phpmyfaq

·

CVE-2026-66397

·

Published

2026-07-27

·

Updated

2026-07-28

CVSS v4.0

8.6

High

VectorAV:N/AC:L/AT:N/PR:H/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
Name of the Vulnerable Software and Affected Versions phpMyFAQ versions prior to 4.1.6
Description Authenticated attackers can delete arbitrary files due to insufficient sanitization of path traversal sequences in the existing image field during category updates. This issue occurs within the Image::delete() function. By deleting the database.php configuration file, an attacker can disable the installation gate and gain access to the public setup wizard to create new superadmin accounts.
Recommendations Update to version 4.1.6 or later.

Exploit

Fix

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-66397
GHSA-MH9W-5HR8-3272

Affected Products

Phpmyfaq