Vulmon
Recent Vulnerabilities
Research Posts
Trends
Blog
About
Contact
Vulmon Alerts
By Relevance
By Risk Score
By Publish Date
invision power board vulnerabilities and exploits
(subscribe to this query)
NA
CVE-2007-3219
Unspecified vulnerability in sources/action_public/xmlout.php in Invision Power Board (IPB or IP.Board) 2.2.0 up to and including 2.2.2 allows remote malicious users to modify another user's profile data, such as an AIM screen name or Yahoo! identity.
Invision Power Services Invision Power Board 2.2
Invision Power Services Invision Power Board 2.2.1
Invision Power Services Invision Power Board 2.2.2
NA
CVE-2007-2963
Multiple cross-site scripting (XSS) vulnerabilities in Invision Power Board (IPB or IP.Board) 2.2.2, and possibly earlier, allows remote malicious users to inject arbitrary web script or HTML via (1) module_bbcodeloader.php, (2) module_div.php, (3) module_email.php, (4) module_im...
Invision Power Services Invision Power Board
NA
CVE-2007-2349
Cross-site scripting (XSS) vulnerability in Invision Power Board (IP.Board) 2.1.x and 2.2.x allows remote malicious users to inject arbitrary web script or HTML by uploading crafted images or PDF files.
Invision Power Services Invision Power Board 2.1
Invision Power Services Invision Power Board 2.2
NA
CVE-2006-7071
SQL injection vulnerability in classes/class_session.php in Invision Power Board (IPB) 2.1 up to 2.1.6 allows remote malicious users to execute arbitrary SQL commands via the CLIENT_IP parameter.
Invision Power Services Invision Power Board 2.1.2
Invision Power Services Invision Power Board 2.1.3
Invision Power Services Invision Power Board 2.1.6
Invision Power Services Invision Power Board 2.1.1
Invision Power Services Invision Power Board 2.1.4
Invision Power Services Invision Power Board 2.1.5
2 EDB exploits
NA
CVE-2006-7064
Cross-site scripting (XSS) vulnerability in forum/admin.php for Invision Power Board (IPB) 2.1.6 and previous versions allows remote malicious users to inject arbitrary web script or HTML as the administrator via the phpinfo parameter.
Invision Power Services Invision Power Board 1.3.1 Final
Invision Power Services Invision Power Board 1.3 Final
Invision Power Services Invision Power Board 2.0.x
Invision Power Services Invision Power Board 2.0 Alpha3
Invision Power Services Invision Power Board 2.1.2
Invision Power Services Invision Power Board 2.1.3
Invision Power Services Invision Power Board 2.1 Beta3
Invision Power Services Invision Power Board 2.1 Beta4
Invision Power Services Invision Power Board 1.0.3
Invision Power Services Invision Power Board 1.1.1
Invision Power Services Invision Power Board 1.1.2
Invision Power Services Invision Power Board 2.0.1
Invision Power Services Invision Power Board 2.0.2
Invision Power Services Invision Power Board 2.0 Pf2
Invision Power Services Invision Power Board 2.1
Invision Power Services Invision Power Board 2.1.5 2006-04-25
Invision Power Services Invision Power Board 2.1.6
Invision Power Services Invision Power Board 1.2
Invision Power Services Invision Power Board 1.3
Invision Power Services Invision Power Board 2.0.3
Invision Power Services Invision Power Board 2.0.4
Invision Power Services Invision Power Board 2.1.0
NA
CVE-2006-5203
Invision Power Board (IPB) 2.1.7 and previous versions allows remote restricted administrators to inject arbitrary web script or HTML, or execute arbitrary SQL commands, via a forum description that contains a crafted image with PHP code, which is executed when the user visits th...
Invision Power Services Invision Power Board 1.0.1
Invision Power Services Invision Power Board 1.0.3
Invision Power Services Invision Power Board 2.0
Invision Power Services Invision Power Board 2.0.0
Invision Power Services Invision Power Board 2.0 Pf1
Invision Power Services Invision Power Board 2.0 Pf2
Invision Power Services Invision Power Board 2.1.5
Invision Power Services Invision Power Board 2.1.5 2006-03-08
Invision Power Services Invision Power Board 2.1 Rc1
Invision Power Services Invision Power Board
Invision Power Services Invision Power Board 1.0
Invision Power Services Invision Power Board 1.3.1 Final
Invision Power Services Invision Power Board 1.3 Final
Invision Power Services Invision Power Board 2.0 Alpha3
Invision Power Services Invision Power Board 2.0 Pdr3
Invision Power Services Invision Power Board 2.1.3
Invision Power Services Invision Power Board 2.1.4
Invision Power Services Invision Power Board 2.1 Beta4
Invision Power Services Invision Power Board 2.1 Beta5
Invision Power Services Invision Power Board 1.1.1
Invision Power Services Invision Power Board 1.1.2
Invision Power Services Invision Power Board 2.0.1
NA
CVE-2006-5204
Cross-site scripting (XSS) vulnerability in action_admin/member.php in Invision Power Board (IPB) 2.1.7 and previous versions allows remote authenticated users to inject arbitrary web script or HTML via a reference to a script in the avatar setting, which can be leveraged for a c...
Invision Power Services Invision Power Board 1.3
Invision Power Services Invision Power Board 1.3.1 Final
Invision Power Services Invision Power Board 2.0.4
Invision Power Services Invision Power Board 2.0.x
Invision Power Services Invision Power Board 2.1.1
Invision Power Services Invision Power Board 2.1.2
Invision Power Services Invision Power Board 2.1 Beta3
Invision Power Services Invision Power Board 2.1 Beta4
Invision Power Services Invision Power Board 1.1.2
Invision Power Services Invision Power Board 1.2
Invision Power Services Invision Power Board 2.0.2
Invision Power Services Invision Power Board 2.0.3
Invision Power Services Invision Power Board 2.1
Invision Power Services Invision Power Board 2.1.0
Invision Power Services Invision Power Board 2.1 Alpha2
Invision Power Services Invision Power Board 2.1 Beta2
Invision Power Services Invision Power Board 1.0
Invision Power Services Invision Power Board 1.0.1
Invision Power Services Invision Power Board 1.3 Final
Invision Power Services Invision Power Board 2.0
Invision Power Services Invision Power Board 2.0 Alpha3
Invision Power Services Invision Power Board 2.0 Pdr3
NA
CVE-2006-4155
Unspecified vulnerability in func_topic_threaded.php (aka threaded view mode) in Invision Power Board (IPB) prior to 2.1.7 21013.60810.s allows remote malicious users to "access posts outside the topic."
Invision Power Services Invision Power Board
NA
CVE-2006-3543
Multiple SQL injection vulnerabilities in Invision Power Board (IPB) 1.x and 2.x allow remote malicious users to execute arbitrary SQL commands via the (1) idcat and (2) code parameters in a ketqua action in index.php; the id parameter in a (3) Attach and (4) ref action in index....
Invision Power Services Invision Power Board 2.0 Pf1
Invision Power Services Invision Power Board 1.0
Invision Power Services Invision Power Board 1.1.2
Invision Power Services Invision Power Board 2.0.4
Invision Power Services Invision Power Board 2.1.6
Invision Power Services Invision Power Board 2.1 Alpha2
Invision Power Services Invision Power Board 2.0 Alpha3
Invision Power Services Invision Power Board 1.1.1
Invision Power Services Invision Power Board 1.0.3
Invision Power Services Invision Power Board 2.0 Pdr3
Invision Power Services Invision Power Board 2.0
Invision Power Services Invision Power Board 1.3 Final
Invision Power Services Invision Power Board 1.2
Invision Power Services Invision Power Board 2.1.5
Invision Power Services Invision Power Board 1.0.1
Invision Power Services Invision Power Board 2.0.3
Invision Power Services Invision Power Board 2.1
Invision Power Services Invision Power Board 2.1.4
Invision Power Services Invision Power Board 1.3.1 Final
Invision Power Services Invision Power Board 2.0 Pf2
Invision Power Services Invision Power Board 2.0.2
Invision Power Services Invision Power Board 2.0.1
1 EDB exploit
NA
CVE-2006-3544
Multiple SQL injection vulnerabilities in Invision Power Board (IPB) 1.3 Final allow remote malicious users to execute arbitrary SQL commands via the CODE parameter in a (1) Stats, (2) Mail, and (3) Reg action in index.php. NOTE: the developer has disputed this issue, stating tha...
Invision Power Services Invision Board 1.3.1 Final
Invision Power Services Invision Board 1.3 Final
CVSSv3
CVSSv2
CVSSv3
VMScore
Recommendations:
NULL pointer dereference
CVE-2023-52689
CVE-2024-23803
client side
CVE-2023-52696
information disclosure
CVE-2024-35843
CVE-2024-27130
CVE-2023-52697
Vulnerability Notification Service
You don’t have to wait for vulnerability scanning results
Get Started
« PREV
1
2
3
4
5
6
7
8
9
NEXT »