CVE-2004-1836

SQL injection vulnerability in index.php in Invision Power Top Site List 1.1 RC 2 and earlier allows remote attackers to execute arbitrary SQL via the id parameter of the comments action.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:invision_power_services:invision_power_top_site_list:1.0:*:*:*:*:*:*:*
cpe:2.3:a:invision_power_services:invision_power_top_site_list:1.1:*:*:*:*:*:*:*
cpe:2.3:a:invision_power_services:invision_power_top_site_list:1.1_rc2:*:*:*:*:*:*:*

History

No history.

Information

Published : 2004-12-31 05:00

Updated : 2024-02-28 10:24


NVD link : CVE-2004-1836

Mitre link : CVE-2004-1836

CVE.ORG link : CVE-2004-1836


JSON object : View

Products Affected

invision_power_services

  • invision_power_top_site_list