CVE-2008-6565

Cross-site scripting (XSS) vulnerability in Invision Power Board 2.3.1 and earlier allows remote attackers to inject arbitrary web script or HTML via an IFRAME tag in the signature.
Cross-site Scripting
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
4.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:N
mitreCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 36%
VendorProductVersion
invision_power_servicesinvision_power_board
𝑥
≤ 2.3.1
invision_power_servicesinvision_power_board
1.0
invision_power_servicesinvision_power_board
1.0.1
invision_power_servicesinvision_power_board
1.0.3
invision_power_servicesinvision_power_board
1.1.1
invision_power_servicesinvision_power_board
1.1.2
invision_power_servicesinvision_power_board
1.2
invision_power_servicesinvision_power_board
1.3
invision_power_servicesinvision_power_board
1.3.1_final:_final
invision_power_servicesinvision_power_board
1.3_final:_final
invision_power_servicesinvision_power_board
2.0
invision_power_servicesinvision_power_board
2.0.0
invision_power_servicesinvision_power_board
2.0.1
invision_power_servicesinvision_power_board
2.0.2
invision_power_servicesinvision_power_board
2.0.3
invision_power_servicesinvision_power_board
2.0.4
invision_power_servicesinvision_power_board
2.0.x:x
invision_power_servicesinvision_power_board
2.0_alpha3:_alpha3
invision_power_servicesinvision_power_board
2.0_pdr3:_pdr3
invision_power_servicesinvision_power_board
2.0_pf1:_pf1
invision_power_servicesinvision_power_board
2.0_pf2:_pf2
invision_power_servicesinvision_power_board
2.1
invision_power_servicesinvision_power_board
2.1.0
invision_power_servicesinvision_power_board
2.1.1
invision_power_servicesinvision_power_board
2.1.2
invision_power_servicesinvision_power_board
2.1.3
invision_power_servicesinvision_power_board
2.1.4
invision_power_servicesinvision_power_board
2.1.5
invision_power_servicesinvision_power_board
2.1.5_2006-03-08:_2006
invision_power_servicesinvision_power_board
2.1.5_2006-04-25:_2006
invision_power_servicesinvision_power_board
2.1.6
invision_power_servicesinvision_power_board
2.1.7
invision_power_servicesinvision_power_board
2.1.x:x
invision_power_servicesinvision_power_board
2.1_alpha2:_alpha2
invision_power_servicesinvision_power_board
2.1_beta2:_beta2
invision_power_servicesinvision_power_board
2.1_beta3:_beta3
invision_power_servicesinvision_power_board
2.1_beta4:_beta4
invision_power_servicesinvision_power_board
2.1_beta5:_beta5
invision_power_servicesinvision_power_board
2.1_rc1:_rc1
invision_power_servicesinvision_power_board
2.2
invision_power_servicesinvision_power_board
2.2.1
invision_power_servicesinvision_power_board
2.2.2
invision_power_servicesinvision_power_board
2.3
𝑥
= Vulnerable software versions