Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.12648
Category:Web application abuses
Title:SQL Disclosure in Invision Power Board
Summary:There is a vulnerability in the current version of Invision Power Board;that allows an attacker to reveal the SQL queries used by the product, and;any page that was built by the administrator using the IPB's interface,;simply by appending the variable 'debug' to the request.
Description:Summary:
There is a vulnerability in the current version of Invision Power Board
that allows an attacker to reveal the SQL queries used by the product, and
any page that was built by the administrator using the IPB's interface,
simply by appending the variable 'debug' to the request.

Solution:
Upgrade to the newest version of this software.

CVSS Score:
7.5

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:P/A:P

CopyrightCopyright (C) 2004 Noam Rathaus

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.