Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-96fq-wh7q-8hhv

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью

Описание

core/email_api.php in MantisBT before 1.2.12 does not properly manage the sending of e-mail notifications about restricted bugs, which might allow remote authenticated users to obtain sensitive information by adding a note to a bug before losing permission to view that bug.

core/email_api.php in MantisBT before 1.2.12 does not properly manage the sending of e-mail notifications about restricted bugs, which might allow remote authenticated users to obtain sensitive information by adding a note to a bug before losing permission to view that bug.

EPSS

Процентиль: 63%
0.00447
Низкий

Связанные уязвимости

ubuntu
около 13 лет назад

core/email_api.php in MantisBT before 1.2.12 does not properly manage the sending of e-mail notifications about restricted bugs, which might allow remote authenticated users to obtain sensitive information by adding a note to a bug before losing permission to view that bug.

nvd
около 13 лет назад

core/email_api.php in MantisBT before 1.2.12 does not properly manage the sending of e-mail notifications about restricted bugs, which might allow remote authenticated users to obtain sensitive information by adding a note to a bug before losing permission to view that bug.

debian
около 13 лет назад

core/email_api.php in MantisBT before 1.2.12 does not properly manage ...

EPSS

Процентиль: 63%
0.00447
Низкий