Description
|
|
Multiple vulnerabilities have been identified in Invision Power Board, which could be exploited by remote attackers to execute arbitrary SQL commands and scripting code. These flaws are due to input validation errors in the "ipsclass.php", "action_public/topics.php", "action_public/usercp.php", "action_public/search.php" and "action_public/forums.php" scripts that do not properly validate certain paremeters, which could be exploited by malicious people to conduct SQL injection and cross site scripting attacks.
|