CVE-2006-1287: XSS
Cross-site scripting (XSS) vulnerability in Invision Power Board (IPB) 2.0.4 and 2.1.4 before 20060130 allows remote attackers to steal cookies and probably conduct other activities when the victim is using Internet Explorer.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2006-1287?
CVE-2006-1287 is considered a high severity vulnerability due to its potential for cross-site scripting (XSS) attacks.
How do I fix CVE-2006-1287?
To fix CVE-2006-1287, upgrade Invision Power Board to a version released after January 30, 2006.
What systems are affected by CVE-2006-1287?
CVE-2006-1287 affects Invision Power Board versions 2.0.4 and 2.1.4 prior to the patch released on January 30, 2006.
What type of attack can CVE-2006-1287 facilitate?
CVE-2006-1287 can facilitate cross-site scripting (XSS) attacks, allowing attackers to steal cookies and potentially conduct unauthorized actions.
Is CVE-2006-1287 specific to certain web browsers?
Yes, CVE-2006-1287 is particularly concerning for users of Internet Explorer due to the nature of the XSS vulnerability.