First published: Thu Mar 07 2019(Updated: )
Simple Machines Forum (SMF) 2.0.4 allows XSS via the index.php?action=pm;sa=settings;save sa parameter.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Simplemachines Simple Machines Forum | =2.0.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The vulnerability ID for Simple Machines Forum (SMF) 2.0.4 XSS vulnerability is CVE-2013-7467.
The severity level of CVE-2013-7467 is medium (6.1).
The XSS vulnerability in Simple Machines Forum (SMF) 2.0.4 occurs via the index.php?action=pm;sa=settings;save sa parameter.
To fix the XSS vulnerability in Simple Machines Forum (SMF) 2.0.4, apply the necessary patch or upgrade to a secure version.
Yes, you can find additional information about CVE-2013-7467 at http://hauntit.blogspot.com/2013/04/en-smf-204-full-disclosure.html.