vendor:
Invision Power Board
by:
Egidio Romano aka EgiX
9
CVSS
HIGH
PHP Object Injection
94
CWE
Product Name: Invision Power Board
Affected Version From: 3.3.4
Affected Version To: 3.3.4
Patch Exists: YES
Related CWE: CVE-2009-4138
CPE: cpe:a:invision_power_services:invision_power_board
Metasploit:
https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2010-0631/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2010-0095/, https://www.rapid7.com/db/vulnerabilities/suse-cve-2009-4138/, https://www.rapid7.com/db/vulnerabilities/vmsa-2010-0009-1-service-console-update-cve-2009-4138/, https://www.rapid7.com/db/vulnerabilities/centos_linux-cve-2009-4138/
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: None
2009
Invision Power Board <= 3.3.4 "unserialize()" PHP Code Execution
Invision Power Board is vulnerable to a PHP Object Injection vulnerability due to the lack of proper sanitization of user input passed through cookies. An attacker can exploit this vulnerability to execute arbitrary PHP code via the "__destruct()" method of a maliciously crafted object.
Mitigation:
Upgrade to the latest version of Invision Power Board.