CVE-2006-1287

Cross-site scripting (XSS) vulnerability in Invision Power Board (IPB) 2.0.4 and 2.1.4 before 20060130 allows remote attackers to steal cookies and probably conduct other activities when the victim is using Internet Explorer.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:invision_power_services:invision_power_board:2.0.4:*:*:*:*:*:*:*
cpe:2.3:a:invision_power_services:invision_power_board:2.1.4:*:*:*:*:*:*:*

History

21 Nov 2024, 00:08

Type Values Removed Values Added
References () http://forums.invisionpower.com/index.php?showtopic=206790 - Patch () http://forums.invisionpower.com/index.php?showtopic=206790 - Patch
References () http://secunia.com/advisories/19141 - () http://secunia.com/advisories/19141 -
References () http://www.vupen.com/english/advisories/2006/0861 - () http://www.vupen.com/english/advisories/2006/0861 -

Information

Published : 2006-03-19 23:02

Updated : 2024-11-21 00:08


NVD link : CVE-2006-1287

Mitre link : CVE-2006-1287

CVE.ORG link : CVE-2006-1287


JSON object : View

Products Affected

invision_power_services

  • invision_power_board