İçeriğe atla
Noroxi

SimpleMachines kayıtları

simplemachines üreticisine ait 31 yayımlanmış kayıt.

Tüm kayıtlar

31 kayıt
  • CVE-2011-1127
    41Planlayın

    SSI.php in Simple Machines Forum (SMF) before 1.1.13, and 2.x before 2.0 RC5, does not properly restrict guest access, which allows remote a

    KritikCVSS 10,0İstismar yokEPSS %2

    simplemachines · smf20 Haz 2011

  • CVE-2005-4891
    40Planlayın

    Simple Machine Forum (SMF) versions 1.0.4 and earlier have an SQL injection vulnerability that allows remote attackers to inject arbitrary S

    KritikCVSS 9,8Kavram kanıtıEPSS %2

    simplemachines · simple machine forum15 Oca 2020

  • CVE-2016-5726
    39İzleyin

    Packages.php in Simple Machines Forum (SMF) 2.1 allows remote attackers to conduct PHP object injection attacks and execute arbitrary PHP co

    KritikCVSS 9,8İstismar yokEPSS %2

    simplemachines · simple machines forum9 Şub 2017

  • CVE-2019-11574
    39İzleyin

    An issue was discovered in Simple Machines Forum (SMF) before release 2.0.17.

    KritikCVSS 9,8İstismar yokEPSS %1

    simplemachines · simple machine forum20 Mar 2020

  • CVE-2018-10305
    39İzleyin

    The MessageSearch2 function in PersonalMessage.php in Simple Machines Forum (SMF) before 2.0.15 does not properly use the possible_users var

    KritikCVSS 9,8İstismar yokEPSS %1

    simplemachines · simple machines forum23 Nis 2018

  • CVE-2013-7466
    36İzleyin

    Simple Machines Forum (SMF) 2.0.4 allows local file inclusion, with resultant remote code execution, in install.php via ../ directory traver

    YüksekCVSS 8,8İstismar yokEPSS %4

    simplemachines · simple machines forum7 Mar 2019

  • CVE-2016-5727
    35İzleyin

    LogInOut.php in Simple Machines Forum (SMF) 2.1 allows remote attackers to conduct PHP object injection attacks and execute arbitrary PHP co

    YüksekCVSS 8,8İstismar yokEPSS %2

    simplemachines · simple machines forum9 Şub 2017

  • CVE-2013-7468
    33İzleyin

    Simple Machines Forum (SMF) 2.0.4 allows PHP Code Injection via the index.php?action=admin;area=languages;sa=editlang dictionary parameter.

    YüksekCVSS 8,1İstismar yokEPSS %2

    simplemachines · simple machines forum7 Mar 2019

  • CVE-2008-6971
    32İzleyin

    The password reset functionality in Simple Machines Forum (SMF) 1.0.x before 1.0.14, 1.1.x before 1.1.6, and 2.0 before 2.0 beta 4 includes

    YüksekCVSS 7,5Kavram kanıtıEPSS %7

    simplemachines · smf13 Ağu 2009

  • CVE-2022-26982
    31İzleyin

    SimpleMachinesForum 2.1.1 and earlier allows remote authenticated administrators to execute arbitrary code by inserting a vulnerable php cod

    YüksekCVSS 7,2Kavram kanıtıEPSS %9

    simplemachines · simple machines forum5 Nis 2022

  • CVE-2011-1128
    30İzleyin

    The loadUserSettings function in Load.php in Simple Machines Forum (SMF) before 1.1.13, and 2.x before 2.0 RC5, does not properly handle inv

    YüksekCVSS 7,5İstismar yokEPSS %2

    simplemachines · smf20 Haz 2011

  • CVE-2013-7235
    30İzleyin

    Simple Machines Forum (SMF) before 1.1.19 and 2.x before 2.0.6 allows remote attackers to impersonate arbitrary users via multiple space cha

    YüksekCVSS 7,5İstismar yokEPSS %2

    simplemachines · simple machines forum29 Nis 2014

  • CVE-2013-7236
    30İzleyin

    Simple Machines Forum (SMF) 2.0.6, 1.1.19, and earlier allows remote attackers to impersonate arbitrary users via a Unicode homoglyph charac

    YüksekCVSS 7,5İstismar yokEPSS %2

    simplemachines · simple machines forum29 Nis 2014

  • CVE-2011-3615
    30İzleyin

    Multiple SQL injection vulnerabilities in Simple Machines Forum (SMF) before 1.1.15 and 2.x before 2.0.1 allow remote attackers to execute a

    YüksekCVSS 7,5İstismar yokEPSS %1

    simplemachines · smf24 Eki 2011

  • CVE-2011-1130
    30İzleyin

    Simple Machines Forum (SMF) before 1.1.13, and 2.x before 2.0 RC5, does not properly validate the start parameter, which might allow remote

    YüksekCVSS 7,5İstismar yokEPSS %1

    simplemachines · smf20 Haz 2011

  • CVE-2009-5068
    29İzleyin

    There is a file disclosure vulnerability in SMF (Simple Machines Forum) affecting versions through v2.0.3.

    YüksekCVSS 7,2Kavram kanıtıEPSS %2

    simplemachines · simple machines forum15 Oca 2020

  • CVE-2011-4173
    27İzleyin

    Cross-site request forgery (CSRF) vulnerability in Simple Machines Forum (SMF) 2.x before 2.0.1 allows remote attackers to hijack the authen

    OrtaCVSS 6,8İstismar yokEPSS %1

    simplemachines · smf24 Eki 2011

  • CVE-2019-12490
    26İzleyin

    An issue was discovered in Simple Machines Forum (SMF) before 2.0.16.

    OrtaCVSS 6,5İstismar yokEPSS %1

    simplemachines · simple machines forum22 Oca 2020

  • CVE-2013-4395
    24İzleyin

    Simple Machines Forum (SMF) through 2.0.5 has XSS

    OrtaCVSS 6,1İstismar yokEPSS %1

    simplemachines · simple machines forum12 Şub 2020

  • CVE-2013-7467
    24İzleyin

    Simple Machines Forum (SMF) 2.0.4 allows XSS via the index.php?action=pm;sa=settings;save sa parameter.

    OrtaCVSS 6,1İstismar yokEPSS %1

    simplemachines · simple machines forum7 Mar 2019

  • CVE-2025-67163
    24İzleyin

    A stored cross-site scripting (XSS) vulnerability in Simple Machines Forum v2.1.6 allows attackers to execute arbitrary web scripts or HTML

    OrtaCVSS 6,1İstismar yokEPSS %0

    simplemachines · simple machines forum18 Ara 2025

  • CVE-2024-7438
    21İzleyin

    SimpleMachines SMF User Alert Read Status index.php resource injection

    OrtaCVSS 5,3İstismar yokEPSS %0

    simplemachines · simple machines forum3 Ağu 2024

  • CVE-2024-7437
    21İzleyin

    SimpleMachines SMF Delete User index.php resource injection

    OrtaCVSS 5,3İstismar yokEPSS %0

    simplemachines · simple machines forum3 Ağu 2024

  • CVE-2013-0192
    20İzleyin

    File Disclosure in SMF (SimpleMachines Forum) <= 2.0.3: Forum admin can read files such as the database config.

    OrtaCVSS 4,9Kavram kanıtıEPSS %4

    simplemachines · simple machines forum7 Şub 2020

  • CVE-2011-1131
    20İzleyin

    The PlushSearch2 function in Search.php in Simple Machines Forum (SMF) before 1.1.13, and 2.x before 2.0 RC5, uses certain cached data in a

    OrtaCVSS 5,0İstismar yokEPSS %1

    simplemachines · smf20 Haz 2011