Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
invision power services invision power board vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2008-1359
Cross-site scripting (XSS) vulnerability in Invision Power Board (IPB or IP.Board) 2.3.4 prior to 2008-03-13 allows remote malicious users to inject arbitrary web script or HTML via nested BBCodes, a different vector than CVE-2008-0913.
Invision Power Services Invision Power Board
NA
CVE-2015-6810
Cross-site scripting (XSS) vulnerability in Invision Power Services IPS Community Suite (aka Invision Power Board, IPB, or Power Board) 4.x prior to 4.0.12.1 allows remote authenticated users to inject arbitrary web script or HTML via the event_location[address] array parameter t...
Invisionpower Invision Power Board 4.0.2
Invisionpower Invision Power Board 4.0.3
Invisionpower Invision Power Board 4.0.4
Invisionpower Invision Power Board 4.0.5.1
Invisionpower Invision Power Board 4.0.9.2
Invisionpower Invision Power Board 4.0.10.2
Invisionpower Invision Power Board 4.0.11
Invisionpower Invision Power Board 4.0.12
Invisionpower Invision Power Board 4.0.0
Invisionpower Invision Power Board 4.0.7
Invisionpower Invision Power Board 4.0.8.1
Invisionpower Invision Power Board 4.0.1
Invisionpower Invision Power Board 4.0.6.1
Invisionpower Invision Power Board 4.0.8
1 EDB exploit
NA
CVE-2008-0913
Cross-site scripting (XSS) vulnerability in Invision Power Board (IPB or IP.Board) 2.3.4 allows remote malicious users to inject arbitrary web script or HTML via crafted BBCodes in an unspecified context.
Invision Power Services Invision Power Board 2.3.4
NA
CVE-2004-1578
Cross-site scripting (XSS) vulnerability in index.php in Invision Power Board 2.0.0 allows remote malicious users to execute arbitrary web script or HTML via the Referer field in the HTTP header.
Invision Power Services Invision Power Board 2.0.0
NA
CVE-2004-2279
Cross-site scripting (XSS) vulnerability in Invision Power Board 1.3 Final allows remote malicious users to execute arbitrary script as other users via the pop parameter in a chat action to index.php.
Invision Power Services Invision Power Board 1.3 Final
NA
CVE-2006-1076
SQL injection vulnerability in index.php, possibly during a showtopic operation, in Invision Power Board (IPB) 2.1.5 allows remote malicious users to execute arbitrary SQL commands via the st parameter.
Invision Power Services Invision Power Board 2.1.5
1 EDB exploit
NA
CVE-2003-1385
ipchat.php in Invision Power Board 1.1.1 allows remote malicious users to execute arbitrary PHP code, if register_globals is enabled, by modifying the root_path parameter to reference a URL on a remote web server that contains the code.
Invision Power Services Invision Power Board 1.1.1
1 EDB exploit
NA
CVE-2006-0888
index.php in Invision Power Board (IPB) 2.0.1, with Code Confirmation disabled, allows remote malicious users to cause an unspecified denial of service by registering a large number of users.
Invision Power Services Invision Power Board 2.0.1
2 EDB exploits
NA
CVE-2006-1267
Invision Power Board 2.1.4 allows remote malicious users to hijack sessions and possibly gain administrative privileges by obtaining the session ID from the s parameter, then replaying it in another request.
Invision Power Services Invision Power Board 2.1.4
NA
CVE-2006-1326
Multiple cross-site scripting (XSS) vulnerabilities in Invision Power Board 2.0.4 allow remote malicious users to inject arbitrary web script or HTML via the (1) result_type, (2) search_in, (3) nav, (4) forums, and (5) s parameters in the Search action to index.php; (6) st parame...
Invision Power Services Invision Power Board 2.0.4
7 EDB exploits
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
camera
bypass
CVE-2024-3592
CVE-2024-37383
CVE-2024-24919
CVE-2024-27822
CVE-2024-36788
CVE-2024-36789
man-in-the-middle
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
NEXT »