VulnerabilityModified
CVE-2016-5727
LogInOut.php in Simple Machines Forum (SMF) 2.1 allows remote attackers to conduct PHP object injection attacks and execute arbitrary PHP code via vectors related to variables derived from user input in a foreach loop.
HIGH 8.8EPSS 1.53%
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (1.53%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
LogInOut.php in Simple Machines Forum (SMF) 2.1 allows remote attackers to conduct PHP object injection attacks and execute arbitrary PHP code via vectors related to variables derived from user input in a foreach loop.
- CVSS 3.0
- 8.8 HIGHCVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
- EPSS
- 1.53% probability · 73th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-94
- Affected
- simplemachines/simple machines forum
- Source
- cve@mitre.org
References
- http://www.openwall.com/lists/oss-security/2016/06/10/7Mailing List, Patch, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2016/06/18/1Mailing List, Patch, Third Party Advisory
- https://github.com/SimpleMachines/SMF2.1/commit/19e560b9f3e8fc6d7d9d60c1ff617b5ed5c08008#diff-513c4f9c501cbefcc14420c01848f23cIssue Tracking, Patch, Third Party Advisory
- https://github.com/SimpleMachines/SMF2.1/issues/3522Issue Tracking, Patch, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2016/06/10/7Mailing List, Patch, Third Party Advisory
- http://www.openwall.com/lists/oss-security/2016/06/18/1Mailing List, Patch, Third Party Advisory
- https://github.com/SimpleMachines/SMF2.1/commit/19e560b9f3e8fc6d7d9d60c1ff617b5ed5c08008#diff-513c4f9c501cbefcc14420c01848f23cIssue Tracking, Patch, Third Party Advisory
- https://github.com/SimpleMachines/SMF2.1/issues/3522Issue Tracking, Patch, Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.