CVE-2006-6369 | Invision Power Services Invision Community Blog up to 1.2.4 entry_reply_entry.php eid sql injection (EDB-2877 / ADV-2006-4820)
A vulnerability labeled as critical has been found in Invision Power Services Invision Community Blog up to 1.2.4. This impacts an unknown function in the library lib/entry_reply_entry.php. Such manipulation of the argument eid leads to sql injection.
This vulnerability is referenced as CVE-2006-6369. It is possible to launch the attack remotely. Furthermore, an exploit is available.