ZeroHour

CVE-2016-6174

PoC ×2
CVSS 3.0
8.1 high
EPSS
12%p96
Published
()
Modified
Description

applications/core/modules/front/system/content.php in Invision Power Services IPS Community Suite (aka Invision Power Board, IPB, or Power Board) before 4.1.13, when used with PHP before 5.4.24 or 5.5.x before 5.5.8, allows remote attackers to execute arbitrary code via the content_class parameter.

Vendors
invisioncommunityphp
Products
invision power board, php
Vector
CVSS:3.0/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.