Medium severity6.1NVD Advisory· Published Mar 13, 2020· Updated Jun 16, 2026
CVE-2009-5159
CVE-2009-5159
Description
Invision Power Board (aka IPB or IP.Board) 2.x through 3.0.4, when Internet Explorer 5 is used, allows XSS via a .txt attachment.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6- cpe:2.3:a:invisioncommunity:invision_power_board:*:*:*:*:*:*:*:*Range: >=2.0,<=3.0.4
- cpe:2.3:a:microsoft:internet_explorer:5:*:*:*:*:*:*:*
- Invision Power Board/Invision Power Boarddescription
- Range: 2.x through 3.0.4
- Range: 2.x through 3.0.4
- Range: 2.x through 3.0.4
Patches
Vulnerability mechanics
References
4- packetstormsecurity.com/files/83624/Invision-Power-Board-3.0.4-Cross-Site-Scripting.htmlnvdExploitThird Party AdvisoryVDB Entry
- www.exploit-db.com/exploits/33394nvdExploitThird Party AdvisoryVDB Entry
- community.invisionpower.com/topic/300051-invision-power-board-305-released/nvdBroken LinkVendor Advisory
- www.securityfocus.com/bid/37263/infonvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.