PT-2007-6028 · Invision Power · Invision Power Board

Published

2007-09-17

·

Updated

2017-07-29

·

CVE-2007-4914

CVSS v2.0

6.0

Medium

VectorAV:N/AC:M/Au:S/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions: Invision Power Board versions 2.3.1 before 20070912
Description: The issue allows remote authenticated users to change the member ID and reduce the privilege level of arbitrary users via a crafted payment form. This is related to certain PHP classes in the payment gateways directory, specifically class gw 2checkout.php, class gw authorizenet.php, class gw nochex.php, class gw paypal.php, and class gw safshop.php.
Recommendations: For Invision Power Board version 2.3.1 before 20070912, update to a version released after 20070912 to resolve the issue. As a temporary workaround, consider restricting access to the payment form and related PHP classes in the sources/classes/paymentgateways/ directory to minimize the risk of exploitation.

Fix

RCE

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2007-4914

Affected Products

Invision Power Board