CVE Vulnerabilities

CVE-2005-1816

Published: Jun 01, 2005 | Modified: Sep 05, 2008
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

Invision Power Board (IPB) 1.0 through 2.0.4 allows non-root admins to add themselves or other users to the root admin group via the Move users in this group to screen.

Affected Software

Name Vendor Start Version End Version
Invision_board Invision_power_services 1.0 (including) 1.0 (including)
Invision_board Invision_power_services 1.0.1 (including) 1.0.1 (including)
Invision_board Invision_power_services 1.1.1 (including) 1.1.1 (including)
Invision_board Invision_power_services 1.1.2 (including) 1.1.2 (including)
Invision_board Invision_power_services 1.2 (including) 1.2 (including)
Invision_board Invision_power_services 1.3 (including) 1.3 (including)
Invision_board Invision_power_services 1.3.1_final (including) 1.3.1_final (including)
Invision_board Invision_power_services 1.3_final (including) 1.3_final (including)
Invision_board Invision_power_services 2.0 (including) 2.0 (including)
Invision_board Invision_power_services 2.0.1 (including) 2.0.1 (including)
Invision_board Invision_power_services 2.0.2 (including) 2.0.2 (including)
Invision_board Invision_power_services 2.0.3 (including) 2.0.3 (including)
Invision_board Invision_power_services 2.0.4 (including) 2.0.4 (including)
Invision_board Invision_power_services 2.0_alpha_3 (including) 2.0_alpha_3 (including)
Invision_board Invision_power_services 2.0_pdr3 (including) 2.0_pdr3 (including)
Invision_board Invision_power_services 2.0_pf1 (including) 2.0_pf1 (including)
Invision_board Invision_power_services 2.0_pf2 (including) 2.0_pf2 (including)

References