Simple Machines Forum (SMF) 1.1.6 - 'POST' Filter Security Bypass

EDB-ID:

32462

CVE:

N/A


Author:

WHK

Type:

webapps


Platform:

PHP

Date:

2008-10-06


source: https://www.securityfocus.com/bid/31594/info

Simple Machines Forum (SMF) is prone to a security-bypass vulnerability because the application fails to sufficiently sanitize user-supplied input.

Attackers can exploit this issue to bypass filter restrictions and post spam content onto the affected site. Other attacks are also possible.

SMF 1.1.6 is vulnerable; other versions may also be affected.

[b]ht[b][/b]tp://www.ex[i][/i]ample.com/[/b]