Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2cvm-gqf6-2jwg

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Invision Power Board (IPB) 2.1.7 and earlier allows remote restricted administrators to inject arbitrary web script or HTML, or execute arbitrary SQL commands, via a forum description that contains a crafted image with PHP code, which is executed when the user visits the "Manage Forums" link in the Admin control panel.

Invision Power Board (IPB) 2.1.7 and earlier allows remote restricted administrators to inject arbitrary web script or HTML, or execute arbitrary SQL commands, via a forum description that contains a crafted image with PHP code, which is executed when the user visits the "Manage Forums" link in the Admin control panel.

EPSS

Процентиль: 53%
0.00306
Низкий

Связанные уязвимости

nvd
больше 19 лет назад

Invision Power Board (IPB) 2.1.7 and earlier allows remote restricted administrators to inject arbitrary web script or HTML, or execute arbitrary SQL commands, via a forum description that contains a crafted image with PHP code, which is executed when the user visits the "Manage Forums" link in the Admin control panel.

EPSS

Процентиль: 53%
0.00306
Низкий