CVE Vulnerabilities

CVE-2005-1070

Published: Apr 11, 2005 | Modified: Jul 11, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

SQL injection vulnerability in index.php in Invision Power Board 1.3.1 Final and earlier allows remote attackers to execute arbitrary SQL commands via the st parameter.

Affected Software

Name Vendor Start Version End Version
Invision_board Invision_power_services 1.0 (including) 1.0 (including)
Invision_board Invision_power_services 1.0.1 (including) 1.0.1 (including)
Invision_board Invision_power_services 1.1.1 (including) 1.1.1 (including)
Invision_board Invision_power_services 1.1.2 (including) 1.1.2 (including)
Invision_board Invision_power_services 1.2 (including) 1.2 (including)
Invision_board Invision_power_services 1.3 (including) 1.3 (including)
Invision_board Invision_power_services 1.3.1_final (including) 1.3.1_final (including)
Invision_board Invision_power_services 1.3_final (including) 1.3_final (including)

References