Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-pvg3-5pq8-4hwq

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

MantisBT before 1.2.18 does not properly check permissions when sending an email that indicates when a monitored issue is related to another issue, which allows remote authenticated users to obtain sensitive information about restricted issues.

MantisBT before 1.2.18 does not properly check permissions when sending an email that indicates when a monitored issue is related to another issue, which allows remote authenticated users to obtain sensitive information about restricted issues.

EPSS

Процентиль: 41%
0.0019
Низкий

Дефекты

CWE-200

Связанные уязвимости

nvd
около 11 лет назад

MantisBT before 1.2.18 does not properly check permissions when sending an email that indicates when a monitored issue is related to another issue, which allows remote authenticated users to obtain sensitive information about restricted issues.

debian
около 11 лет назад

MantisBT before 1.2.18 does not properly check permissions when sendin ...

EPSS

Процентиль: 41%
0.0019
Низкий

Дефекты

CWE-200