Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-3942

Опубликовано: 21 июл. 2007
Источник: nvd
CVSS2: 5.8
EPSS Низкий

Описание

Directory traversal vulnerability in index.php in Simple Machines Forum (SMF) 1.1.3 allows remote attackers to include local files via unspecified vectors related to the sourcedir parameter or the actionArray hash. NOTE: CVE and multiple third parties dispute this vulnerability because both sourcedir and actionArray are defined before use

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:simple_machines:simple_machines_forum:1.1.3:*:*:*:*:*:*:*

EPSS

Процентиль: 50%
0.00264
Низкий

5.8 Medium

CVSS2

Дефекты

NVD-CWE-Other

Связанные уязвимости

github
почти 4 года назад

** DISPUTED ** Directory traversal vulnerability in index.php in Simple Machines Forum (SMF) 1.1.3 allows remote attackers to include local files via unspecified vectors related to the sourcedir parameter or the actionArray hash. NOTE: CVE and multiple third parties dispute this vulnerability because both sourcedir and actionArray are defined before use.

EPSS

Процентиль: 50%
0.00264
Низкий

5.8 Medium

CVSS2

Дефекты

NVD-CWE-Other