CVE-2013-7468: Code Injection
Published Mar 7, 2019
·Updated
Simple Machines Forum (SMF) 2.0.4 allows PHP Code Injection via the index.php?action=admin;area=languages;sa=editlang dictionary parameter.
Affected Software
1 affected component
SimpleMachines Simple Machines Forum=2.0.4
Event History
Mar 7, 2019
CVE Published
via MITRE·10:00 PM
Data Sourced
via MITRE·10:00 PM
Description
Frequently Asked Questions
1
What is CVE-2013-7468?
CVE-2013-7468 is a vulnerability in Simple Machines Forum (SMF) 2.0.4 that allows PHP Code Injection via the index.php?action=admin;area=languages;sa=editlang dictionary parameter.
2
How severe is CVE-2013-7468?
CVE-2013-7468 has a severity score of 8.1, which is considered high.
3
How does CVE-2013-7468 affect Simple Machines Forum (SMF)?
CVE-2013-7468 affects Simple Machines Forum (SMF) version 2.0.4.
4
What is the Common Weakness Enumeration (CWE) for CVE-2013-7468?
CVE-2013-7468 is associated with CWE-94, which is the vulnerability type 'Code Injection.'
5
Is there a fix available for CVE-2013-7468?
Yes, it is recommended to update Simple Machines Forum (SMF) to a version that is not affected by CVE-2013-7468.