Simple Machines Forum(SMF)在 2.1.7 及之前版本中存在一个授权状态混淆漏洞,该漏洞已在提交 6f0dc61 中修复。此漏洞位于用户个人资料(profile)加载器中,允许已认证的普通低权限用户通过为 参数传递多个值,从而获取管理员权限。攻击者可利用连续加载个人资料时 与 之间的状态不一致,使系统将其视为某个管理员个人资料的拥有者,进而实施未授权的密码修改,最终实现完全账户接管。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| SimpleMachines | SMF | 0 ~ 2.1.7 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POCNo comments yet