Loading
Generated remediation guidance and an executive summary. No account required.
Invision Power Board before 3.3.1 fails to sanitize user-supplied input which could allow remote attackers to obtain sensitive information or execute arbitrary code by uploading a malicious file.
Use CWE-434, Invisioncommunity vendor hub and Invision Power Board product page to widen CVE-2012-2226 into its surrounding weakness, vendor, and product context.
Compare it with CVE-2013-3725, CVE-2017-8898 and CVE-2014-4928 for nearby disclosures in the same product family.