Medium severity6.1NVD Advisory· Published Mar 2, 2019· Updated Jun 17, 2026
CVE-2019-8278
CVE-2019-8278
Description
Stored XSS in Invision Power Board versions 3.3.1 - 3.4.8 leads to Remote Code Execution.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
4cpe:2.3:a:invisioncommunity:invision_power_board:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:invisioncommunity:invision_power_board:*:*:*:*:*:*:*:*range: >=3.3.1,<=3.4.8
- (no CPE)range: 3.3.1 - 3.4.8
- Range: 3.3.1 - 3.4.8
- Kaspersky Lab/Invision Power Boardv5Range: 3.3.1 - 3.4.8
Patches
Vulnerability mechanics
References
2- scriptinjection.blogspot.com/2019/02/invision-power-board-331-348-stored-xss.htmlnvdExploitThird Party Advisory
- www.securityfocus.com/bid/107258nvdThird Party AdvisoryVDB Entry
News mentions
0No linked articles in our index yet.