CVE-2007-3942
Last modified
CVE-2007-3942 is a vulnerability of currently unknown severity. Directory traversal vulnerability in index.php in Simple Machines Forum (SMF) 1.1.3 allows remote attackers to include local files via unspecified vectors related to the sourcedir parameter or the actionArray hash. NOTE: CVE and multiple third parties dispute this vulnerability because both sourcedir and actionArray are defined before use. EPSS estimates a 1.24% chance of exploitation in the next 30 days.
Description
Directory traversal vulnerability in index.php in Simple Machines Forum (SMF) 1.1.3 allows remote attackers to include local files via unspecified vectors related to the sourcedir parameter or the actionArray hash. NOTE: CVE and multiple third parties dispute this vulnerability because both sourcedir and actionArray are defined before use
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Simple Machines | Simple Machines Forum | 1.1.3 |
References
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2007-3942?
How severe is CVE-2007-3942?
How do I fix CVE-2007-3942?
Are you affected by CVE-2007-3942?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
