CVE-2015-6812: High severity invision community vulnerability
Published Sep 4, 2015
·Updated
Invision Power Services IPS Community Suite (aka Invision Power Board, IPB, or Power Board) before 4.0.12.1 allows remote attackers to cause a denial of service (loop and memory consumption) via a crafted URL.
Affected Software
1 affected component
Invisioncommunity Invision Power Board<=4.0.11
Event History
Sep 4, 2015
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2015-6812?
CVE-2015-6812 has a severity rating classified as high due to its potential to cause denial of service and memory exhaustion.
2
How do I fix CVE-2015-6812?
To fix CVE-2015-6812, upgrade your Invision Power Board to version 4.0.12.1 or later.
3
What type of attacks does CVE-2015-6812 enable?
CVE-2015-6812 enables remote attackers to perform denial of service attacks through crafted URLs.
4
Which versions of Invision Power Board are affected by CVE-2015-6812?
Versions of Invision Power Board prior to 4.0.12.1 are affected by CVE-2015-6812.
5
What can I do if I cannot upgrade to fix CVE-2015-6812?
If you cannot upgrade, consider implementing rate limiting and filtering to mitigate potential exploitation of CVE-2015-6812.