What is CVE-2026-76208?
CVE-2026-76208 is an authentication bypass vulnerability in phpMyFAQ versions 3.1.0 through 4.1.6 within the AuthLdap::create() function when LDAP authentication is enabled. By unconditionally setting the user status to active after a successful LDAP bind, it allows bypassing restrictions on pre-existing local accounts that were previously blocked or inactive. Users should immediately update to version 4.1.7 or later.
Azərbaycanca: CVE-2026-76208 phpMyFAQ-un 3.1.0-dən 4.1.6-dək versiyalarında LDAP autentifikasiyası aktiv olduqda AuthLdap::create() funksiyasında mövcud olan autentifikasiyadan yan keçmə zəifliyidir. Uğurlu LDAP bağlantısından sonra istifadəçi statusunun şərtsiz aktiv edilməsi nəticəsində bloklanmış və ya qeyri-aktiv lokal hesablar yan keçilə bilər. İstifadəçilər dərhal 4.1.7 və ya daha yuxarı versiyaya yeniləməlidirlər.
Related CVEs
link basis: same weakness class CWE-287
FAQ2
Under what condition does CVE-2026-76208 occur in phpMyFAQ?
The vulnerability occurs in the AuthLdap::create() function when LDAP authentication is enabled.
What type of account restrictions can an attacker bypass using CVE-2026-76208?
It can bypass restrictions on pre-existing local accounts that were blocked or inactive in phpMyFAQ.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.