Vulnerabilities (CVE)

Filtered by vendor Invision Power Services Subscribe
Filtered by product Invision Power Board
Total 42 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2006-2061 1 Invision Power Services 2 Invision Board, Invision Power Board 2025-04-03 5.0 MEDIUM N/A
SQL injection vulnerability in lib/func_taskmanager.php in Invision Power Board (IPB) 2.1.x and 2.0.x before 20060425 allows remote attackers to execute arbitrary SQL commands via the ck parameter, which can inject at most 32 characters.
CVE-2003-1385 1 Invision Power Services 1 Invision Power Board 2025-04-03 6.8 MEDIUM N/A
ipchat.php in Invision Power Board 1.1.1 allows remote attackers to execute arbitrary PHP code, if register_globals is enabled, by modifying the root_path parameter to reference a URL on a remote web server that contains the code.