Simple Machines Forum Multiple Security Vulnerabilities
BID:48388
Info
Simple Machines Forum Multiple Security Vulnerabilities
| Bugtraq ID: | 48388 |
| Class: | Input Validation Error |
| CVE: |
CVE-2011-1128 CVE-2011-1129 CVE-2011-1130 CVE-2011-1131 |
| Remote: | Yes |
| Local: | No |
| Published: | Jun 22 2011 12:00AM |
| Updated: | Jun 22 2011 12:00AM |
| Credit: | The vendor reported these issues. |
| Vulnerable: |
Simple Machines Simple Machines Forum 1.1.12 Simple Machines Simple Machines Forum 1.1.11 Simple Machines Simple Machines Forum 1.1.10 Simple Machines Simple Machines Forum 1.1.9 Simple Machines Simple Machines Forum 1.1.8 Simple Machines Simple Machines Forum 1.1.7 Simple Machines Simple Machines Forum 1.1.6 Simple Machines Simple Machines Forum 1.1.5 Simple Machines Simple Machines Forum 1.1.4 Simple Machines Simple Machines Forum 1.1.3 Simple Machines Simple Machines Forum 1.1.2 Simple Machines Simple Machines Forum 1.1.1 Simple Machines Simple Machines Forum 2.0 RC2 Simple Machines Simple Machines Forum 2.0 RC1-1 Simple Machines Simple Machines Forum 2.0 RC1 |
| Not Vulnerable: |
Simple Machines Simple Machines Forum 1.1.13 Simple Machines Simple Machines Forum 2.0.RC5 |
Discussion
Simple Machines Forum Multiple Security Vulnerabilities
Simple Machines Forum is prone to multiple security vulnerabilities because it fails to properly sanitize user-supplied input. These vulnerabilities include a security-bypass vulnerability, a cross-site scripting vulnerability, an SQL-injection vulnerability, a denial-of service vulnerability, and multiple information-disclosure vulnerabilities.
An attacker can exploit these vulnerabilities to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site, steal cookie-based authentication credentials, disclose or modify sensitive information, exploit latent vulnerabilities in the underlying database, deny service to legitimate users, or perform unauthorized actions. Other attacks are also possible.
Simple Machines Forum versions prior to 1.1.13 and 2.x before 2.0 RC5 are vulnerable.
Simple Machines Forum is prone to multiple security vulnerabilities because it fails to properly sanitize user-supplied input. These vulnerabilities include a security-bypass vulnerability, a cross-site scripting vulnerability, an SQL-injection vulnerability, a denial-of service vulnerability, and multiple information-disclosure vulnerabilities.
An attacker can exploit these vulnerabilities to execute arbitrary script code in the browser of an unsuspecting user in the context of the affected site, steal cookie-based authentication credentials, disclose or modify sensitive information, exploit latent vulnerabilities in the underlying database, deny service to legitimate users, or perform unauthorized actions. Other attacks are also possible.
Simple Machines Forum versions prior to 1.1.13 and 2.x before 2.0 RC5 are vulnerable.
Exploit / POC
Simple Machines Forum Multiple Security Vulnerabilities
Attackers can exploit these issues via a browser. To exploit the cross-site scripting issue, an attacker must entice an unsuspecting user into following a malicious URI.
Attackers can exploit these issues via a browser. To exploit the cross-site scripting issue, an attacker must entice an unsuspecting user into following a malicious URI.
Solution / Fix
Simple Machines Forum Multiple Security Vulnerabilities
Solution:
Updates are available. Please see the references for more information.
Solution:
Updates are available. Please see the references for more information.
References
Simple Machines Forum Multiple Security Vulnerabilities
References:
References:
- Simple Machines SMF Homepage (Simple Machines)
- SMF 1.1.13, SMF 2.0 RC4 Security Patch, and SMF 2.0 Release Candidate 5 (Simple Machines)