Vulnerabilities > Simplemachines > Simple Machines Forum > 2.1.1

DATE CVE VULNERABILITY TITLE RISK
2022-04-05 CVE-2022-26982 Code Injection vulnerability in Simplemachines Simple Machines Forum
SimpleMachinesForum 2.1.1 and earlier allows remote authenticated administrators to execute arbitrary code by inserting a vulnerable php code because the themes can be modified by an administrator.
network
low complexity
simplemachines CWE-94
7.2