6.8
CVSSv2

CVE-2008-2276

Published: 16/05/2008 Updated: 29/09/2017
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
VMScore: 685
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Cross-site request forgery (CSRF) vulnerability in manage_user_create.php in Mantis 1.1.1 allows remote malicious users to create new administrative users via a crafted link.

Vulnerable Product Search on Vulmon Subscribe to Product

matisbt mantis 1.1.1

Exploits

Mantis Bug Tracker 111 Multiple Vulnerabilities Name Multiple Vulnerabilities in Mantis Systems Affected Mantis 111 and possibly earlier versions Severity High Impact (CVSSv2) High 9/10, vector: (AV:N/AC:L/Au:N/C:C/I:P/A:P) Vendor wwwmantisbtorg/ Advisory wwwushit/team/ ...
Mantis Bug Tracker version 111 suffers from remote code execution, cross site scripting, and cross site request forgery vulnerabilities ...