AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2006-1288

HIGH · CVSS 7.5 EPSS 1.17%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2006-03-19 · Last synced 2026-08-04

CyberRota Analysis

AI analysis pending.

CVE
CVE-2006-1288
Severity
HIGH
CVSS
7.5
EPSS
1.17%

Original NVD Description

Multiple SQL injection vulnerabilities in Invision Power Board (IPB) 2.0.4 and 2.1.4 before 20060105 allow remote attackers to execute arbitrary SQL commands via cookies, related to (1) arrays of id/stamp pairs and (2) the keys in arrays of key/value pairs in ipsclass.php; (3) the topics variable in usercp.php; and the topicsread cookie in (4) topics.php, (5) search.php, and (6) forums.php.