Simple Machines Forum CVE-2007-3308 Remote Security Vulnerability

Simple Machines Forum is prone to a remote security vulnerability. Simple Machines Forum (SMF) 1.1.2 uses a concatenation method with insufficient randomization when creating a WAV file CAPTCHA, which allows remote attackers to pass the CAPTCHA test via an automated brute-force attack.


 

Privacy Statement
Copyright 2010, SecurityFocus