First published: Mon Oct 24 2011(Updated: )
Cross-site request forgery (CSRF) vulnerability in Simple Machines Forum (SMF) 2.x before 2.0.1 allows remote attackers to hijack the authentication of administrators or moderators via vectors involving image files, a different vulnerability than CVE-2011-3615. NOTE: some of these details are obtained from third party information.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Simplemachines Smf | =2.0 | |
Simplemachines Smf | =2.0-beta1 | |
Simplemachines Smf | =2.0-beta3 | |
Simplemachines Smf | =2.0-beta4 | |
Simplemachines Smf | =2.0-beta2 | |
Simplemachines Smf | =2.0-beta3.1 | |
Simplemachines Smf | =2.0-beta2.1 | |
Simplemachines Smf | =2.0-rc2 | |
Simplemachines Smf | =2.0-rc3 | |
Simplemachines Smf | =2.0-rc1 | |
Simplemachines Smf | =2.0-rc5 | |
Simplemachines Smf | =2.0-rc4 | |
Simplemachines Smf | =2.0-rc1.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.