CVE-2022-3152

Unverified Password Change in phpfusion/phpfusion

Unverified Password Change in GitHub repository phpfusion/phpfusion prior to 9.10.20.


We have discovered 96 live websites that are affected by CVE-2022-3152.

Run a Free Instant Scan




Affected Software

Product  PHPFusion
Category Content Management System
Vulnerable Domains96 live websites (54% of PHPFusion install base)
Vulnerable Versions
  • from 0 through 9.10.20
Vulnerable Versions Count17 versions ( 85% of all versions)


Common Weakness Enumeration

CWE-620 Unverified Password Change



Details

  • Published - Sep 7, 2022
  • Updated - Aug 3, 2024

Website Distribution by Country

Number of websites using CVE-2022-3152
United States19 websites



Netherlands16 websites
Germany15 websites
GB12 websites
Poland12 websites
Czech Republic3 websites
Denmark3 websites
Slovakia3 websites
Hungary2 websites
Sweden2 websites

Website Distribution by TLD

Number of websites using CVE-2022-3152
.com15 websites
.eu13 websites
.de10 websites
.org8 websites
.pl8 websites
.nl8 websites
.co.uk6 websites
.dk4 websites
.net4 websites
.cz2 websites

Vulnerable Versions

Vulnerable versions are highlighted in red

Websites affected by CVE-2022-3152

Top websites that are affected by CVE-2022-3152. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
**********.**.uk United States**,***
*********.com United States***,***
*****.nu Sweden*,***,***
*******.****.org Netherlands*,***,***
*********.org United States*,***,***
*******.***.la Laos*,***,***
**********.**.uk GB*,***,***
*********.com France*,***,***
******.ro Romania*,***,***
*********.pl Poland*,***,***
See full domain list

FAQ

CVE-2022-3152 is Unverified Password Change in PHPFusion
A total of 96 websites have been identified as vulnerable to CVE-2022-3152, based on global website indexing conducted by WebTechSurvey.
The PHPFusion is affected by the CVE-2022-3152 vulnerability.
PHPFusion versions up to 9.10.20 are vulnerable to CVE-2022-3152.
CVE-2022-3152 is resolved in version 9.10.20 of PHPFusion.