Vulnerability Details CVE-2006-6515
Mantis before 1.1.0a2 sets the default value of $g_bug_reminder_threshold to "reporter" instead of a more privileged role, which has unknown impact and attack vectors, possibly related to frequency of reminders.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.003
EPSS Ranking 55.3%
CVSS Severity
CVSS v2 Score 10.0
Products affected by CVE-2006-6515
-
cpe:2.3:a:mantis:mantis:*
-
cpe:2.3:a:mantis:mantis:1.0.0
-
cpe:2.3:a:mantis:mantis:1.0.0_rc1
-
cpe:2.3:a:mantis:mantis:1.0.0_rc2
-
cpe:2.3:a:mantis:mantis:1.0.0_rc3
-
cpe:2.3:a:mantis:mantis:1.0.0_rc4
-
cpe:2.3:a:mantis:mantis:1.0.0_rc5
-
cpe:2.3:a:mantis:mantis:1.0.0a1
-
cpe:2.3:a:mantis:mantis:1.0.0a2
-
cpe:2.3:a:mantis:mantis:1.0.0a3
-
cpe:2.3:a:mantis:mantis:1.0.1
-
cpe:2.3:a:mantis:mantis:1.0.2
-
cpe:2.3:a:mantis:mantis:1.0.3
-
cpe:2.3:a:mantis:mantis:1.0.4
-
cpe:2.3:a:mantis:mantis:1.0.5
-
cpe:2.3:a:mantis:mantis:1.0.6