Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2005-2556

Опубликовано: 24 авг. 2005
Источник: ubuntu
Приоритет: medium
CVSS2: 7.5

Описание

core/database_api.php in Mantis 0.19.0a1 through 1.0.0a3, with register_globals enabled, allows remote attackers to connect to internal databases by modifying the g_db_type variable and monitoring the speed of responses, as identified by bug#0005956.

РелизСтатусПримечание
dapper

released

0.19.4-2
devel

released

0.19.4-2
edgy

released

0.19.4-2
feisty

released

0.19.4-2
upstream

needs-triage

Показывать по

Ссылки на источники

7.5 High

CVSS2

Связанные уязвимости

nvd
около 20 лет назад

core/database_api.php in Mantis 0.19.0a1 through 1.0.0a3, with register_globals enabled, allows remote attackers to connect to internal databases by modifying the g_db_type variable and monitoring the speed of responses, as identified by bug#0005956.

debian
около 20 лет назад

core/database_api.php in Mantis 0.19.0a1 through 1.0.0a3, with registe ...

github
больше 3 лет назад

core/database_api.php in Mantis 0.19.0a1 through 1.0.0a3, with register_globals enabled, allows remote attackers to connect to internal databases by modifying the g_db_type variable and monitoring the speed of responses, as identified by bug#0005956.

7.5 High

CVSS2