CVE-2003-1385

ipchat.php in Invision Power Board 1.1.1 allows remote attackers to execute arbitrary PHP code, if register_globals is enabled, by modifying the root_path parameter to reference a URL on a remote web server that contains the code.

Scoring

CVSS base score
0.11
EPSS probability
2.86%
Published
2007-10-19
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs