Packages.php in Simple Machines Forum (SMF) 2.1 allows remote attackers to conduct PHP object injection attacks and execute arbitrary PHP code via the themechanges array parameter.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2017-02-09T15:00:00

Updated: 2024-08-06T01:07:59.907Z

Reserved: 2016-06-18T00:00:00

Link: CVE-2016-5726

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2017-02-09T15:59:01.127

Modified: 2017-02-23T18:20:40.233

Link: CVE-2016-5726

cve-icon Redhat

No data.