Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hf4x-6h87-hm79

Опубликовано: 23 фев. 2023
Источник: github
Github: Прошло ревью
CVSS3: 4.3

Описание

MantisBT may expose private issues' summaries to unauthorized users

Impact

Due to insufficient access-level checks, any logged-in user allowed to perform Group Actions can get access to the Summary field of private Issues (i.e. having Private view status, or belonging to a private Project) via a crafted bug_arr[] parameter in bug_actiongroup_ext.php.

Patches

The vulnerability has been fixed in MantisBT version 2.25.6.

Workarounds

None

Credits

Thanks to d3vpoo1 for reporting the issue.

References

Пакеты

Наименование

mantisbt/mantisbt

composer
Затронутые версииВерсия исправления

<= 2.25.5

2.25.6

EPSS

Процентиль: 51%
0.0028
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-200

Связанные уязвимости

CVSS3: 4.3
nvd
почти 3 года назад

Mantis Bug Tracker (MantisBT) is an open source issue tracker. In versions prior to 2.25.6, due to insufficient access-level checks, any logged-in user allowed to perform Group Actions can access to the _Summary_ field of private Issues (i.e. having Private view status, or belonging to a private Project) via a crafted `bug_arr[]` parameter in *bug_actiongroup_ext.php*. This issue is fixed in version 2.25.6. There are no workarounds.

CVSS3: 4.3
debian
почти 3 года назад

Mantis Bug Tracker (MantisBT) is an open source issue tracker. In vers ...

EPSS

Процентиль: 51%
0.0028
Низкий

4.3 Medium

CVSS3

Дефекты

CWE-200