First published: Sat Mar 26 2005(Updated: )
Cross-site scripting (XSS) vulnerability in Invision Power Board 2.0.2 and earlier allows remote attackers to inject arbitrary web script or HTML via an HTTP POST request.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Invisioncommunity Invision Power Board | =1.0 | |
Invisioncommunity Invision Power Board | =1.0.1 | |
Invisioncommunity Invision Power Board | =1.1.1 | |
Invisioncommunity Invision Power Board | =1.1.2 | |
Invisioncommunity Invision Power Board | =1.2 | |
Invisioncommunity Invision Power Board | =1.3 | |
Invisioncommunity Invision Power Board | =1.3.1_final | |
Invisioncommunity Invision Power Board | =1.3_final | |
Invisioncommunity Invision Power Board | =2.0 | |
Invisioncommunity Invision Power Board | =2.0.1 | |
Invisioncommunity Invision Power Board | =2.0.2 | |
Invisioncommunity Invision Power Board | =2.0_alpha_3 | |
Invisioncommunity Invision Power Board | =2.0_pdr3 | |
Invisioncommunity Invision Power Board | =2.0_pf1 | |
Invisioncommunity Invision Power Board | =2.0_pf2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2005-0886 is classified as a moderate severity vulnerability due to the potential for cross-site scripting attacks.
To fix CVE-2005-0886, upgrade to a version of Invision Power Board that is higher than 2.0.2.
CVE-2005-0886 can be exploited through cross-site scripting attacks, allowing attackers to inject arbitrary web scripts.
Invision Power Board versions 2.0.2 and earlier are affected by CVE-2005-0886.
Yes, you can identify CVE-2005-0886 on your server by checking the version of the Invision Power Board software currently installed.