VWE-2021-6260 Printable Version
This page is a chapter in Info Known Vulnerabilities
This page has been seen 174,421 times.
-
-
Created by on
-
The versions listed below are known to be affected by this issue. If you are using one of those versions, you should update to a newer release that has no known vulnerabilities.
Common Name None VWE-ID VWE-2021-6260 Related Report None Severity LOW Exploit Difficulty EASY Platform XenForo 2.x Description Permissions Escalation. A custom field that parses BB-Code will render based on the template expansion rules for the maximum wiki page length rather than the maximum field length. Does not affect Lite versions.
Discovered October 19, 2021 Resolved October 25, 2021 Patches Available 4.1.2 Patch Level 3
4.1.1 Patch Level 8