Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Invision Power Board ST Parameter SQL Injection Vulnerability

Invision Power Board is reported prone to an SQL injection vulnerability. Due to improper filtering of user-supplied data, attackers may pass SQL statements to the underlying database through the 'st' parameter.

Invision Power Board 1.3.1 and prior versions are affected by this issue.







 

Privacy Statement
Copyright 2008, SecurityFocus