Simple.Machines.Forum.CSRF.Code.Execution

description-logoDescription

This indicates an attack attempt against a PHP remote code-execution vulnerability in Simple Machines Forum.
Simple Machines Forum has vulnerabilities that are caused by an error that occurs when the vulnerable software handles a malicious HTTP request. They allow remote attacker to execute arbitrary PHP codes.

affected-products-logoAffected Products

Simple Machines Forum 1.1.6 and prior

Impact logoImpact

System Compromise

recomended-action-logoRecommended Actions

Upgrade to version 1.1.7 or higher:
http://www.simplemachines.org/.

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)

Version Updates

Date Version Detail
2020-12-02 16.972