6.8
CVSSv2

CVE-2006-1577

Published: 02/04/2006 Updated: 20/07/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple cross-site scripting (XSS) vulnerabilities in view_all_set.php in Mantis 1.0.1, 1.0.0rc5, and previous versions allow remote malicious users to inject arbitrary web script or HTML via the (1) start_day, (2) start_year, and (3) start_month parameters.

Vulnerable Product Search on Vulmon Subscribe to Product

mantis mantis 1.0.0 rc3

mantis mantis 1.0.0 rc1

mantis mantis 1.0.0 rc2

mantis mantis 1.0.1

mantis mantis 1.0

mantis mantis 1.0.0 rc4

mantis mantis 1.0.0a3

mantis mantis 1.0.0a1

mantis mantis 1.0.0a2