A vulnerability, which was classified as problematic, was found in SimpleMachinesForum up to 2.1.1. Affected is an unknown function of the component Theme Handler. The manipulation leads to code injection.
This vulnerability is traded as CVE-2022-26982. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
The threat actors linked to the Black Basta ransomware have been observed switching up their social engineering tactics, distributing a different set of payloads such as Zbot and DarkGate since early October 2024.
"Users within the target environment will be email bombed by the threat actor, which is often achieved by signing up the user's email to numerous mailing lists simultaneously," Rapid7