7.5
CVSS
CVE-2004-1836
Exploit Found
SQL injection vulnerability in index.php in Invision Power Top Site List 1.1 RC 2 and earlier allows remote attackers to execute arbitrary SQL via the id parameter of the comments action.
Severity: HIGH