5
CVSSv2

CVE-2005-1817

Published: 01/06/2005 Updated: 05/09/2008
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:N/I:P/A:N

Vulnerability Summary

Invision Power Board (IPB) 1.0 up to and including 1.3 allows remote malicious users to edit arbitrary forum posts via a direct request to index.php with modified parameters.

Vulnerable Product Search on Vulmon Subscribe to Product

invision power services invision board 1.0

invision power services invision board 1.0.1

invision power services invision board 1.1.1

invision power services invision board 1.1.2

invision power services invision board 1.2

invision power services invision board 1.3_final

invision power services invision board 1.3

Exploits

source: wwwsecurityfocuscom/bid/13802/info Invision Power Board is affected by an unauthorized access vulnerability Reportedly, a moderator can edit forum posts owned by other moderators through an HTTP GET request without providing sufficient authentication credentials Invision Power Board versions 10 to 13 Final are reportedly aff ...