Unrated severityNVD Advisory· Published Mar 23, 2006· Updated Jun 16, 2026
CVE-2006-1369
CVE-2006-1369
Description
Cross-site scripting (XSS) vulnerability in Invision Power Board (IPB) 2.1.5 and earlier before 20060308 allows remote attackers to inject arbitrary web script or HTML via a Private Message (PM) in certain circumstances.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:invision_power_services:invision_power_board:2.1:*:*:*:*:*:*:*+ 3 more
- cpe:2.3:a:invision_power_services:invision_power_board:2.1:*:*:*:*:*:*:*
- cpe:2.3:a:invision_power_services:invision_power_board:2.1.5:*:*:*:*:*:*:*
- cpe:2.3:a:invision_power_services:invision_power_board:2.1_alpha2:*:*:*:*:*:*:*
- (no CPE)range: <=2.1.5
Patches
Vulnerability mechanics
References
5News mentions
0No linked articles in our index yet.