Vulnerability index

Browse CVEs

24 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Invision Power Board HIGH 7.5
CVE-2007-5688

Multiple SQL injection vulnerabilities in directory.php in the Multi-Forums (aka Multi Host Forum Pro) module 1.3.3, for phpBB and Invision Power Boa…

No fix yet
Fix from $1,950 2007-10-29
Invision Power Board HIGH 9.3
CVE-2006-7064

Cross-site scripting (XSS) vulnerability in forum/admin.php for Invision Power Board (IPB) 2.1.6 and earlier allows remote attackers to inject arbitr…

Mitigation only
Fix from $1,950 2007-02-24
Invision Gallery HIGH 7.5
CVE-2006-6370

SQL injection vulnerability in forum/modules/gallery/post.php in Invision Gallery 2.0.7 allows remote attackers to cause a denial of service and poss…

Mitigation only
Fix from $1,950 2006-12-07
Invision Gallery MEDIUM 5.0
CVE-2006-5205EPSS 11%

Directory traversal vulnerability in Invision Gallery 2.0.7 allows remote attackers to read arbitrary files via a .. (dot dot) sequence in the dir pa…

No fix yet
Fix from $1,600 2006-10-10
Invision Power Board HIGH 7.5
CVE-2006-3543

Multiple SQL injection vulnerabilities in Invision Power Board (IPB) 1.x and 2.x allow remote attackers to execute arbitrary SQL commands via the (1)…

No fix yet
Fix from $1,950 2006-07-13
Invision Board HIGH 7.5
CVE-2006-3544

Multiple SQL injection vulnerabilities in Invision Power Board (IPB) 1.3 Final allow remote attackers to execute arbitrary SQL commands via the CODE …

No fix yet
Fix from $1,950 2006-07-13
Invision Power Board HIGH 7.5
CVE-2006-2217

SQL injection vulnerability in index.php in Invision Power Board allows remote attackers to execute arbitrary SQL commands via the pid parameter in a…

Mitigation only
Fix from $1,950 2006-05-05
Invision Power Board MEDIUM 6.8
CVE-2006-1369

Cross-site scripting (XSS) vulnerability in Invision Power Board (IPB) 2.1.5 and earlier before 20060308 allows remote attackers to inject arbitrary …

Mitigation only
Fix from $1,600 2006-03-23
Invision Power Board MEDIUM 5.1
CVE-2006-1267

Invision Power Board 2.1.4 allows remote attackers to hijack sessions and possibly gain administrative privileges by obtaining the session ID from th…

No fix yet
Fix from $1,600 2006-03-19
Invision Power Board HIGH 7.5
CVE-2006-1076

SQL injection vulnerability in index.php, possibly during a showtopic operation, in Invision Power Board (IPB) 2.1.5 allows remote attackers to execu…

No fix yet
Fix from $1,950 2006-03-09
Invision Power Board MEDIUM 5.0
CVE-2006-0909

Invision Power Board (IPB) 2.1.4 and earlier allows remote attackers to view sensitive information via a direct request to multiple PHP scripts that …

Mitigation only
Fix from $1,600 2006-02-28
Invision Power Board MEDIUM 5.0
CVE-2006-0910

Invision Power Board (IPB) 2.1.4 and earlier allows remote attackers to list directory contents via a direct request to multiple directories, includi…

Mitigation only
Fix from $1,600 2006-02-28
Invision Board MEDIUM 5.0
CVE-2005-2542

Invision Power Board (IPB) 1.0.3 allows remote attackers to inject arbitrary web script or HTML via an attachment, which is automatically downloaded …

No fix yet
Fix from $1,600 2005-08-10
Invision Board MEDIUM 5.0
CVE-2005-1817

Invision Power Board (IPB) 1.0 through 1.3 allows remote attackers to edit arbitrary forum posts via a direct request to index.php with modified para…

No fix yet
Fix from $1,600 2005-06-01
Invision Community Blog HIGH 7.5
CVE-2005-0217

SQL injection vulnerability in index.php in Invision Community Blog allows remote attackers to execute arbitrary SQL commands via the eid parameter.

Mitigation only
Fix from $1,950 2005-05-02
Invision Board HIGH 7.5
CVE-2005-1070

SQL injection vulnerability in index.php in Invision Power Board 1.3.1 Final and earlier allows remote attackers to execute arbitrary SQL commands vi…

Mitigation only
Fix from $1,950 2005-04-11
Invision Gallery HIGH 7.5
CVE-2004-1835

Multiple SQL injection vulnerabilities in index.php in Invision Gallery 1.0.1 allow remote attackers to execute arbitrary SQL via the (1) img, (2) ca…

No fix yet
Fix from $1,950 2004-12-31
Invision Power Top Site List HIGH 7.5
CVE-2004-1836

SQL injection vulnerability in index.php in Invision Power Top Site List 1.1 RC 2 and earlier allows remote attackers to execute arbitrary SQL via th…

No fix yet
Fix from $1,950 2004-12-31
Invision Board HIGH 10.0
CVE-2004-0338

SQL injection vulnerability in search.php for Invision Board Forum allows remote attackers to execute arbitrary SQL queries via the st parameter.

Mitigation only
Fix from $1,950 2004-11-23
Invision Board MEDIUM 6.8
CVE-2004-0359EPSS 6%

Cross-site scripting (XSS) vulnerability in index.php for Invision Power Board 1.3 final allows remote attackers to execute arbitrary script as other…

No fix yet
Fix from $1,600 2004-11-23
Invision Board MEDIUM 5.0
CVE-2004-0355

Invision Power Board 1.3 Final allows remote attackers to gain sensitive information by selecting a file for "Personal Photo" that is not an image fi…

Mitigation only
Fix from $1,600 2004-11-23
Invision Power Board MEDIUM 6.8
CVE-2003-1385

ipchat.php in Invision Power Board 1.1.1 allows remote attackers to execute arbitrary PHP code, if register_globals is enabled, by modifying the root…

No fix yet
Fix from $1,600 2003-12-31
Invision Board MEDIUM 5.0
CVE-2003-1454

Invision Power Services Invision Board 1.0 through 1.1.1, when a forum is password protected, stores the administrator password in a cookie in plaint…

Mitigation only
Fix from $1,600 2003-12-31
Invision Board MEDIUM 5.0
CVE-2002-1149

The installation procedure for Invision Board suggests that users install the phpinfo.php program under the web root, which leaks sensitive informati…

Mitigation only
Fix from $1,600 2002-10-11