CVE-2008-6565
Invision Power Board 2.x - 'Signature' iFrame Security
Severity Score
4.3
*CVSS v2
Exploit Likelihood
*EPSS
Affected Versions
*CPE
Public Exploits
1
*Multiple Sources
Exploited in Wild
-
*KEV
Decision
-
*SSVC
Descriptions
Cross-site scripting (XSS) vulnerability in Invision Power Board 2.3.1 and earlier allows remote attackers to inject arbitrary web script or HTML via an IFRAME tag in the signature.
Vulnerabilidad de secuencias de comandos en sitios cruzados (XSS) en Invision Power Board v2.3.1 y anteriores, permite a atacantes remotos inyectar secuencias de comandos Web o HTML de su elección a través de una etiqueta IFRAME en la firma.
*Credits:
N/A
CVSS Scores
Attack Vector
Attack Complexity
Authentication
Confidentiality
Integrity
Availability
* Common Vulnerability Scoring System
SSVC
- Decision:-
Exploitation
Automatable
Tech. Impact
* Organization's Worst-case Scenario
Timeline
- 2008-03-26 First Exploit
- 2009-03-31 CVE Reserved
- 2009-03-31 CVE Published
- 2023-03-07 EPSS Updated
- 2024-08-07 CVE Updated
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-79: Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CAPEC
References (4)
URL | Tag | Source |
---|---|---|
http://www.securityfocus.com/archive/1/490115/100/0/threaded | Mailing List | |
http://www.securityfocus.com/bid/28466 | Vdb Entry | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/41502 | Vdb Entry |
URL | Date | SRC |
---|---|---|
https://www.exploit-db.com/exploits/31541 | 2008-03-26 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | <= 2.3.1 Search vendor "Invision Power Services" for product "Invision Power Board" and version " <= 2.3.1" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 1.0 Search vendor "Invision Power Services" for product "Invision Power Board" and version "1.0" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 1.0.1 Search vendor "Invision Power Services" for product "Invision Power Board" and version "1.0.1" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 1.0.3 Search vendor "Invision Power Services" for product "Invision Power Board" and version "1.0.3" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 1.1.1 Search vendor "Invision Power Services" for product "Invision Power Board" and version "1.1.1" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 1.1.2 Search vendor "Invision Power Services" for product "Invision Power Board" and version "1.1.2" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 1.2 Search vendor "Invision Power Services" for product "Invision Power Board" and version "1.2" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 1.3 Search vendor "Invision Power Services" for product "Invision Power Board" and version "1.3" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 1.3.1_final Search vendor "Invision Power Services" for product "Invision Power Board" and version "1.3.1_final" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 1.3_final Search vendor "Invision Power Services" for product "Invision Power Board" and version "1.3_final" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.0 Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.0" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.0.0 Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.0.0" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.0.1 Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.0.1" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.0.2 Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.0.2" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.0.3 Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.0.3" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.0.4 Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.0.4" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.0.x Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.0.x" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.0_alpha3 Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.0_alpha3" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.0_pdr3 Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.0_pdr3" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.0_pf1 Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.0_pf1" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.0_pf2 Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.0_pf2" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.1 Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.1" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.1.0 Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.1.0" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.1.1 Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.1.1" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.1.2 Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.1.2" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.1.3 Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.1.3" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.1.4 Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.1.4" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.1.5 Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.1.5" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.1.5_2006-03-08 Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.1.5_2006-03-08" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.1.5_2006-04-25 Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.1.5_2006-04-25" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.1.6 Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.1.6" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.1.7 Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.1.7" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.1.x Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.1.x" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.1_alpha2 Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.1_alpha2" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.1_beta2 Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.1_beta2" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.1_beta3 Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.1_beta3" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.1_beta4 Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.1_beta4" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.1_beta5 Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.1_beta5" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.1_rc1 Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.1_rc1" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.2 Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.2" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.2.1 Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.2.1" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.2.2 Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.2.2" | - |
Affected
| ||||||
Invision Power Services Search vendor "Invision Power Services" | Invision Power Board Search vendor "Invision Power Services" for product "Invision Power Board" | 2.3 Search vendor "Invision Power Services" for product "Invision Power Board" and version "2.3" | - |
Affected
|