VULNERABILITY INTELLIGENCE

CVE-2011-1127

CVSS score10 HIGH
EPSS probability2.21%
CISA KEVNot currently listed
Published2011-06-21
Last modified2026-06-16

Description

SSI.php in Simple Machines Forum (SMF) before 1.1.13, and 2.x before 2.0 RC5, does not properly restrict guest access, which allows remote attackers to have an unspecified impact via unknown vectors.