Vulnerabilities > Invision Power Services > Invision Power TOP Site List > High

DATE CVE VULNERABILITY TITLE RISK
2004-12-31 CVE-2004-1836 SQL Injection vulnerability in Invision Power Services Invision Power TOP Site List 1.0/1.1/1.1Rc2
SQL injection vulnerability in index.php in Invision Power Top Site List 1.1 RC 2 and earlier allows remote attackers to execute arbitrary SQL via the id parameter of the comments action.
network
low complexity
invision-power-services
7.5