4.3
CVSSv2

CVE-2005-1597

Published: 16/05/2005 Updated: 11/07/2017
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 435
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

Cross-site scripting (XSS) vulnerability in (1) search.php and (2) topics.php for Invision Power Board (IPB) 2.0.3 and previous versions allows remote malicious users to inject arbitrary web script or HTML via the highlite parameter.

Vulnerable Product Search on Vulmon Subscribe to Product

invision power services invision board 1.0

invision power services invision board 1.0.1

invision power services invision power board 2.0.3

invision power services invision board 1.2

invision power services invision board 1.3

invision power services invision board 2.0_alpha_3

invision power services invision board 2.0_pdr3

invision power services invision board 1.1.1

invision power services invision board 1.1.2

Exploits

IPBoard Multiple Vulnerabilities Vendor: Invision Power Services Product: IPBoard Version: <= 203 Website: wwwinvisionboardcom/ BID: 13529 13534 CVE: CVE-2005-1597 CVE-2005-1598 OSVDB: 16297 16298 SECUNIA: 15265 PACKETSTORM: 39098 Description: Invision Power Board (IPB) is a professional forum system that has been built from ...