CVE-2005-1816: Medium severity invision power services invision board vulnerability
Invision Power Board (IPB) 1.0 through 2.0.4 allows non-root admins to add themselves or other users to the root admin group via the "Move users in this group to" screen.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2005-1816?
CVE-2005-1816 is considered a high severity vulnerability as it allows non-root admins to elevate their privileges to root admin.
How do I fix CVE-2005-1816?
To fix CVE-2005-1816, ensure all users with admin rights are properly audited and restrict non-root admin access to the 'Move users in this group to' functionality.
What versions are affected by CVE-2005-1816?
CVE-2005-1816 affects Invision Power Board versions 1.0 through 2.0.4.
Who is at risk from CVE-2005-1816?
Websites running vulnerable versions of Invision Power Board that have non-root admins are at risk from CVE-2005-1816.
What happens if I don’t address CVE-2005-1816?
Failure to address CVE-2005-1816 can lead to unauthorized privilege escalation, allowing users to gain full control over the forum.