Shodan
Maps
Images
Monitor
Developer
More...
Dashboard
View Api Docs
Vulnerabilities
By Date
Known Exploited
Advanced Search
Vulnerable Software
Vendors
Products
Vulnerability Details CVE-2012-1123
The mci_check_login function in api/soap/mc_api.php in the SOAP API in MantisBT before 1.2.9 allows remote attackers to bypass authentication via a null password.
Exploit prediction scoring system (EPSS) score
EPSS Score
0.014
EPSS Ranking
79.2%
CVSS Severity
CVSS v2 Score
7.5
References
http://lists.fedoraproject.org/pipermail/package-announce/2012-November/092926.html
http://lists.fedoraproject.org/pipermail/package-announce/2012-November/093063.html
http://lists.fedoraproject.org/pipermail/package-announce/2012-November/093064.html
http://secunia.com/advisories/48258
http://secunia.com/advisories/49572
http://secunia.com/advisories/51199
http://security.gentoo.org/glsa/glsa-201211-01.xml
http://www.debian.org/security/2012/dsa-2500
http://www.mantisbt.org/bugs/changelog_page.php?version_id=140
http://www.mantisbt.org/bugs/view.php?id=13901
http://www.openwall.com/lists/oss-security/2012/03/06/9
http://www.securityfocus.com/bid/52313
https://github.com/mantisbt/mantisbt/commit/f5106be52cf6aa72c521f388e4abb5f0de1f1d7f
http://lists.fedoraproject.org/pipermail/package-announce/2012-November/092926.html
http://lists.fedoraproject.org/pipermail/package-announce/2012-November/093063.html
http://lists.fedoraproject.org/pipermail/package-announce/2012-November/093064.html
http://secunia.com/advisories/48258
http://secunia.com/advisories/49572
http://secunia.com/advisories/51199
http://security.gentoo.org/glsa/glsa-201211-01.xml
http://www.debian.org/security/2012/dsa-2500
http://www.mantisbt.org/bugs/changelog_page.php?version_id=140
http://www.mantisbt.org/bugs/view.php?id=13901
http://www.openwall.com/lists/oss-security/2012/03/06/9
http://www.securityfocus.com/bid/52313
https://github.com/mantisbt/mantisbt/commit/f5106be52cf6aa72c521f388e4abb5f0de1f1d7f
Products affected by CVE-2012-1123
Mantisbt
»
Mantisbt
»
Version:
N/A
cpe:2.3:a:mantisbt:mantisbt:-
Mantisbt
»
Mantisbt
»
Version:
0.18.0
cpe:2.3:a:mantisbt:mantisbt:0.18.0
Mantisbt
»
Mantisbt
»
Version:
0.19.0
cpe:2.3:a:mantisbt:mantisbt:0.19.0
Mantisbt
»
Mantisbt
»
Version:
0.19.1
cpe:2.3:a:mantisbt:mantisbt:0.19.1
Mantisbt
»
Mantisbt
»
Version:
0.19.2
cpe:2.3:a:mantisbt:mantisbt:0.19.2
Mantisbt
»
Mantisbt
»
Version:
0.19.3
cpe:2.3:a:mantisbt:mantisbt:0.19.3
Mantisbt
»
Mantisbt
»
Version:
0.19.4
cpe:2.3:a:mantisbt:mantisbt:0.19.4
Mantisbt
»
Mantisbt
»
Version:
0.19.5
cpe:2.3:a:mantisbt:mantisbt:0.19.5
Mantisbt
»
Mantisbt
»
Version:
1.0.0
cpe:2.3:a:mantisbt:mantisbt:1.0.0
Mantisbt
»
Mantisbt
»
Version:
1.0.1
cpe:2.3:a:mantisbt:mantisbt:1.0.1
Mantisbt
»
Mantisbt
»
Version:
1.0.2
cpe:2.3:a:mantisbt:mantisbt:1.0.2
Mantisbt
»
Mantisbt
»
Version:
1.0.3
cpe:2.3:a:mantisbt:mantisbt:1.0.3
Mantisbt
»
Mantisbt
»
Version:
1.0.4
cpe:2.3:a:mantisbt:mantisbt:1.0.4
Mantisbt
»
Mantisbt
»
Version:
1.0.5
cpe:2.3:a:mantisbt:mantisbt:1.0.5
Mantisbt
»
Mantisbt
»
Version:
1.0.6
cpe:2.3:a:mantisbt:mantisbt:1.0.6
Mantisbt
»
Mantisbt
»
Version:
1.0.7
cpe:2.3:a:mantisbt:mantisbt:1.0.7
Mantisbt
»
Mantisbt
»
Version:
1.0.8
cpe:2.3:a:mantisbt:mantisbt:1.0.8
Mantisbt
»
Mantisbt
»
Version:
1.0.9
cpe:2.3:a:mantisbt:mantisbt:1.0.9
Mantisbt
»
Mantisbt
»
Version:
1.1.0
cpe:2.3:a:mantisbt:mantisbt:1.1.0
Mantisbt
»
Mantisbt
»
Version:
1.1.1
cpe:2.3:a:mantisbt:mantisbt:1.1.1
Mantisbt
»
Mantisbt
»
Version:
1.1.2
cpe:2.3:a:mantisbt:mantisbt:1.1.2
Mantisbt
»
Mantisbt
»
Version:
1.1.3
cpe:2.3:a:mantisbt:mantisbt:1.1.3
Mantisbt
»
Mantisbt
»
Version:
1.1.4
cpe:2.3:a:mantisbt:mantisbt:1.1.4
Mantisbt
»
Mantisbt
»
Version:
1.1.5
cpe:2.3:a:mantisbt:mantisbt:1.1.5
Mantisbt
»
Mantisbt
»
Version:
1.1.6
cpe:2.3:a:mantisbt:mantisbt:1.1.6
Mantisbt
»
Mantisbt
»
Version:
1.1.7
cpe:2.3:a:mantisbt:mantisbt:1.1.7
Mantisbt
»
Mantisbt
»
Version:
1.1.8
cpe:2.3:a:mantisbt:mantisbt:1.1.8
Mantisbt
»
Mantisbt
»
Version:
1.1.9
cpe:2.3:a:mantisbt:mantisbt:1.1.9
Mantisbt
»
Mantisbt
»
Version:
1.2.0
cpe:2.3:a:mantisbt:mantisbt:1.2.0
Mantisbt
»
Mantisbt
»
Version:
1.2.1
cpe:2.3:a:mantisbt:mantisbt:1.2.1
Mantisbt
»
Mantisbt
»
Version:
1.2.2
cpe:2.3:a:mantisbt:mantisbt:1.2.2
Mantisbt
»
Mantisbt
»
Version:
1.2.3
cpe:2.3:a:mantisbt:mantisbt:1.2.3
Mantisbt
»
Mantisbt
»
Version:
1.2.4
cpe:2.3:a:mantisbt:mantisbt:1.2.4
Mantisbt
»
Mantisbt
»
Version:
1.2.5
cpe:2.3:a:mantisbt:mantisbt:1.2.5
Mantisbt
»
Mantisbt
»
Version:
1.2.6
cpe:2.3:a:mantisbt:mantisbt:1.2.6
Mantisbt
»
Mantisbt
»
Version:
1.2.7
cpe:2.3:a:mantisbt:mantisbt:1.2.7
Mantisbt
»
Mantisbt
»
Version:
1.2.8
cpe:2.3:a:mantisbt:mantisbt:1.2.8
Products
Monitor
Search Engine
Developer API
Maps
Bulk Data
Images
Snippets
Pricing
Membership
API Subscriptions
Enterprise
Contact Us
support@shodan.io
Shodan ® - All rights reserved