7.5
CVSSv2

CVE-2008-4689

Published: 22/10/2008 Updated: 08/08/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Mantis prior to 1.1.3 does not unset the session cookie during logout, which makes it easier for remote malicious users to hijack sessions.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mantis mantis 1.0.5

mantis mantis 1.0.4

mantis mantis

mantis mantis 1.0.7

mantis mantis 1.0.6

mantis mantis 0.19.3

mantis mantis 1.0.8

mantis mantis 1.1.1

mantis mantis 1.0.1

mantis mantis 0.19.4

mantis mantis 1.0.3

mantis mantis 1.0.2