Show filters
247 Total Results
Displaying 201-210 of 247
Sort by:
Attacker Value
Unknown
CVE-2007-2546
Disclosure Date: May 09, 2007 (last updated October 04, 2023)
Session fixation vulnerability in Simple Machines Forum (SMF) 1.1.2 and earlier allows remote attackers to hijack web sessions by setting the PHPSESSID parameter.
0
Attacker Value
Unknown
CVE-2006-7013
Disclosure Date: February 15, 2007 (last updated November 08, 2023)
QueryString.php in Simple Machines Forum (SMF) 1.0.7 and earlier, and 1.1rc2 and earlier, allows remote attackers to more easily spoof the IP address and evade banning via a modified X-Forwarded-For HTTP header, which is preferred instead of other more reliable sources for the IP address. NOTE: the original researcher claims that the vendor has disputed this issue
0
Attacker Value
Unknown
CVE-2007-0399
Disclosure Date: January 22, 2007 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in index.php in Simple Machines Forum (SMF) 1.1 RC3 allow remote authenticated users to inject arbitrary web script or HTML via the (1) recipient or (2) BCC field when selecting send in a pm action.
0
Attacker Value
Unknown
CVE-2006-5503
Disclosure Date: October 25, 2006 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in index.php in Simple Machines Forum (SMF) 1.1 RC2 allows remote attackers to inject arbitrary web script or HTML via the action parameter.
0
Attacker Value
Unknown
CVE-2006-5504
Disclosure Date: October 25, 2006 (last updated October 04, 2023)
Cross-site scripting (XSS) vulnerability in index.php in Simple Machines Forum (SMF) allows remote attackers to inject arbitrary web script or HTML via a base64 encoded params value in the action parameter.
0
Attacker Value
Unknown
CVE-2006-4467
Disclosure Date: August 31, 2006 (last updated October 04, 2023)
Simple Machines Forum (SMF) 1.1RCx before 1.1RC3, and 1.0.x before 1.0.8, does not properly unset variables when the input data includes a numeric parameter with a value matching an alphanumeric parameter's hash value, which allows remote attackers to perform directory traversal attacks to read arbitrary local files, lock topics, and possibly have other security impacts. NOTE: it could be argued that this vulnerability is due to a bug in the unset PHP command (CVE-2006-3017) and the proper fix should be in PHP; if so, then this should not be treated as a vulnerability in Simple Machines Forum.
0
Attacker Value
Unknown
CVE-2006-3826
Disclosure Date: July 25, 2006 (last updated October 04, 2023)
Multiple cross-site scripting (XSS) vulnerabilities in Kailash Nadh boastMachine (formerly bMachine) 3.1 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) user_login, (2) full_name, and (3) URL parameters in register.php; and allow remote authenticated administrators to inject arbitrary web script or HTML via the (4) cat_list and (5) key parameters in a certain portion of the admin interface.
0
Attacker Value
Unknown
CVE-2006-3831
Disclosure Date: July 25, 2006 (last updated October 04, 2023)
The Backup selection in Kailash Nadh boastMachine (formerly bMachine) 3.1 and earlier uses predicable filenames for database backups and stores the files under the web root with insufficient access control, which allows remote attackers to obtain sensitive information by downloading a backup file.
0
Attacker Value
Unknown
CVE-2006-3827
Disclosure Date: July 25, 2006 (last updated October 04, 2023)
SQL injection vulnerability in bmc/Inc/core/admin/search.inc.php in Kailash Nadh boastMachine (formerly bMachine) 3.1 and earlier allows remote authenticated administrators to execute arbitrary SQL commands via the blog parameter.
0
Attacker Value
Unknown
CVE-2006-3830
Disclosure Date: July 25, 2006 (last updated October 04, 2023)
The Languages selection in the admin interface in Kailash Nadh boastMachine (formerly bMachine) 3.1 and earlier allows remote authenticated administrators to upload files with arbitrary extensions to the bmc/Inc/Lang directory. NOTE: because the uploaded files cannot be accessed through HTTP, this issue is a vulnerability only if there is a likely usage pattern in which the files would be opened or executed by local users, e.g., malware files with names that entice local users to open the files.
0