Back

CVE-2004-1536

SQL injection vulnerability in index.php in the ibProArcade module for Invision Power Board (IPB) 1.x and 2.x allows remote attackers to execute arbitrary SQL commands via the cat parameter.

Published: Dec 31, 2004 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
ipbproarcade ipbproarcade *

GitHub Security Advisory GHSA-q44w-qm6r-g722

SQL injection vulnerability in index.php in the ibProArcade module for Invision Power Board (IPB)...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 2.42%

Top 17% most likely to be exploited

Threat Score 30.7 / 100

Data Sources

NVD EPSS GitHub