Vulnerabilities
Vulnerable Software
Mantisbt:  >> Mantisbt  >> 2.25.3  Security Vulnerabilities
Mantis Bug Tracker (MantisBT) is an open source issue tracker. In versions prior to 2.25.6, due to insufficient access-level checks, any logged-in user allowed to perform Group Actions can access to the _Summary_ field of private Issues (i.e. having Private view status, or belonging to a private Project) via a crafted `bug_arr[]` parameter in *bug_actiongroup_ext.php*. This issue is fixed in version 2.25.6. There are no workarounds.
CVSS Score
4.3
EPSS Score
0.003
Published
2023-02-23
An XSS vulnerability in MantisBT before 2.25.5 allows remote attackers to attach crafted SVG documents to issue reports or bugnotes. When a user or an admin clicks on the attachment, file_download.php opens the SVG document in a browser tab instead of downloading it as a file, causing the JavaScript code to execute.
CVSS Score
5.4
EPSS Score
0.003
Published
2022-06-24


Contact Us

Shodan ® - All rights reserved