First published: Tue Jul 08 2008(Updated: )
Unspecified vulnerability in Simple Machines Forum (SMF) 1.1.x before 1.1.5 and 1.0.x before 1.0.13 has unknown impact and attack vectors, probably cross-site scripting (XSS), related to "use of the html-tag."
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Simple Machines Forum | <=1.0.12 | |
Simple Machines Forum | <=1.1.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2008-3073 is currently unspecified, but it is believed to involve cross-site scripting vulnerabilities.
To fix CVE-2008-3073, upgrade Simple Machines Forum to version 1.1.5 or later for 1.1.x series or 1.0.13 or later for 1.0.x series.
CVE-2008-3073 affects Simple Machines Forum versions 1.1.4 and earlier in the 1.1.x series, as well as 1.0.12 and earlier in the 1.0.x series.
CVE-2008-3073 possibly involves cross-site scripting (XSS) attack vectors.
The impact of CVE-2008-3073 is currently unknown, as the specifics of the vulnerability remain unspecified.