CVE-2005-2817
Simple Machines Forum (SMF) 1-0-5 and earlier supports the use of URLs for avatar images, which allows remote attackers
Simple Machines Forum (SMF) 1-0-5 and earlier supports the use of URLs for avatar images, which allows remote attackers to monitor sensitive information of forum visitors such as IP address and user agent, as demonstrated using a PHP script on a malicious server.
MEDIUM · CVSS 5
EPSS 0.0059
Schedule remediation
- Public exploit or PoC is available
Sigma rules0
YARA rules0