5
CVSSv2

CVE-2005-4524

Published: 28/12/2005 Updated: 08/03/2011
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Mantis 1.0.0rc3 does not properly handle "Make note private" when a bug is being resolved, which has unknown impact and attack vectors, probably related to an information leak.

Vulnerable Product Search on Vulmon Subscribe to Product

Vendor Advisories

Several security related problems have been discovered in Mantis, a web-based bug tracking system The Common Vulnerabilities and Exposures project identifies the following problems: CVE-2005-4238 Missing input sanitising allows remote attackers to inject arbitrary web script or HTML CVE-2005-4518 Tobias Klein discovered that Mantis a ...