CVE-2006-3543 | Invision Power Services IP.Board 1.x index.php which member_id sql injection (EDB-28167 / BID-18836)
A vulnerability was found in Invision Power Services IP.Board 1.x. It has been rated as critical. The impacted element is the function which of the file index.php. Performing manipulation of the argument member_id results in sql injection.
This vulnerability is cataloged as CVE-2006-3543. It is possible to initiate the attack remotely. Furthermore, there is an exploit available.
It is still unclear if this vulnerability genuinely exists.