Vulnerabilities > Mantis

DATE CVE VULNERABILITY TITLE RISK
2008-10-22 CVE-2008-4689 Improper Authentication vulnerability in Mantis
Mantis before 1.1.3 does not unset the session cookie during logout, which makes it easier for remote attackers to hijack sessions.
network
low complexity
mantis CWE-287
7.5
2008-10-22 CVE-2008-4688 Information Exposure vulnerability in Mantis
core/string_api.php in Mantis before 1.1.3 does not check the privileges of the viewer before composing a link with issue data in the source anchor, which allows remote attackers to discover an issue's title and status via a request with a modified issue number.
network
low complexity
mantis CWE-200
5.0
2008-10-22 CVE-2008-4687 Code Injection vulnerability in Mantis
manage_proj_page.php in Mantis before 1.1.4 allows remote authenticated users to execute arbitrary code via a sort parameter containing PHP sequences, which are processed by create_function within the multi_sort function in core/utility_api.php.
network
low complexity
mantis CWE-94
critical
9.0
2008-07-27 CVE-2008-3333 Path Traversal vulnerability in Mantis
Directory traversal vulnerability in core/lang_api.php in Mantis before 1.1.2 allows remote attackers to include and execute arbitrary files via the language parameter to the user preferences page (account_prefs_update.php).
network
low complexity
mantis CWE-22
7.5
2008-07-27 CVE-2008-3332 Code Injection vulnerability in Mantis
Eval injection vulnerability in adm_config_set.php in Mantis before 1.1.2 allows remote authenticated administrators to execute arbitrary code via the value parameter.
network
low complexity
mantis CWE-94
6.5
2008-07-27 CVE-2008-3331 Cross-Site Scripting vulnerability in Mantis
Cross-site scripting (XSS) vulnerability in return_dynamic_filters.php in Mantis before 1.1.2 allows remote attackers to inject arbitrary web script or HTML via the filter_target parameter.
network
mantis CWE-79
3.5
2008-01-23 CVE-2008-0404 Cross-Site Scripting vulnerability in Mantis
Cross-site scripting (XSS) vulnerability in Mantis before 1.1.1 allows remote attackers to inject arbitrary web script or HTML via vectors related to the "Most active bugs" summary.
network
mantis CWE-79
4.3
2008-01-03 CVE-2007-6611 Cross-Site Scripting vulnerability in Mantis
Cross-site scripting (XSS) vulnerability in view.php in Mantis before 1.1.0 allows remote attackers to inject arbitrary web script or HTML via a filename, related to bug_report.php.
network
mantis CWE-79
4.3
2006-12-15 CVE-2006-6574 Information Disclosure vulnerability in Mantis Custom Fields
Mantis before 1.1.0a2 does not implement per-item access control for Issue History (Bug History), which allows remote attackers to obtain sensitive information by reading the Change column, as demonstrated by the Change column of a custom field.
network
low complexity
mantis
5.0
2006-12-14 CVE-2006-6515 Remote Security vulnerability in Mantis
Mantis before 1.1.0a2 sets the default value of $g_bug_reminder_threshold to "reporter" instead of a more privileged role, which has unknown impact and attack vectors, possibly related to frequency of reminders.
network
low complexity
mantis
critical
10.0