4.6
CVSSv2

CVE-2013-4465

Published: 25/10/2013 Updated: 07/11/2023
CVSS v2 Base Score: 4.6 | Impact Score: 6.4 | Exploitability Score: 3.9
VMScore: 409
Vector: AV:N/AC:H/Au:S/C:P/I:P/A:P

Vulnerability Summary

Unrestricted file upload vulnerability in the avatar upload functionality in Simple Machines Forum prior to 2.0.6 and 2.1 allows remote authenticated users to execute arbitrary code by uploading a file with an executable extension, then accessing it via a direct request to the file in an unspecified directory.

Vulnerable Product Search on Vulmon Subscribe to Product

simplemachines simple machines forum 1.0.15

simplemachines simple machines forum 1.1.6

simplemachines simple machines forum 1.1.15

simplemachines simple machines forum 1.1.8

simplemachines simple machines forum 1.1.5

simplemachines simple machines forum 1.1.11

simplemachines simple machines forum 1.1.14

simplemachines simple machines forum 1.0.14

simplemachines simple machines forum 1.0.8

simplemachines simple machines forum 1.1.16

simplemachines simple machines forum 1.1.1

simplemachines simple machines forum 1.0.2

simplemachines simple machines forum 1.0.12

simplemachines simple machines forum 1.0.16

simplemachines simple machines forum 2.0.4

simplemachines simple machines forum 1.0

simplemachines simple machines forum 1.0.9

simplemachines simple machines forum 1.0.23

simplemachines simple machines forum 1.0.21

simplemachines simple machines forum 1.0.6

simplemachines simple machines forum 2.1

simplemachines simple machines forum 2.0.2

simplemachines simple machines forum 1.1.3

simplemachines simple machines forum 1.0.3

simplemachines simple machines forum 1.0.5

simplemachines simple machines forum 1.0.18

simplemachines simple machines forum 1.0.17

simplemachines simple machines forum 2.0.3

simplemachines simple machines forum 1.0.20

simplemachines simple machines forum 1.1.10

simplemachines simple machines forum

simplemachines simple machines forum 1.1.17

simplemachines simple machines forum 1.1

simplemachines simple machines forum 1.0.7

simplemachines simple machines forum 1.0.19

simplemachines simple machines forum 1.0.10

simplemachines simple machines forum 1.0.13

simplemachines simple machines forum 1.0.1

simplemachines simple machines forum 2.0.1

simplemachines simple machines forum 1.1.2

simplemachines simple machines forum 1.1.9

simplemachines simple machines forum 1.0.4

simplemachines simple machines forum 2.0

simplemachines simple machines forum 1.1.12

simplemachines simple machines forum 1.1.13

simplemachines simple machines forum 1.0.22

simplemachines simple machines forum 1.1.7

simplemachines simple machines forum 1.1.4