Описание
MantisBT before 1.2.9 does not properly check permissions, which allows remote authenticated users with manager privileges to (1) modify or (2) delete global categories.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| hardy | ignored | end of life |
| lucid | ignored | end of life |
| maverick | ignored | end of life |
| natty | released | 1.1.8+dfsg-10squeeze2build0.11.04.1 |
| oneiric | ignored | end of life |
| precise | not-affected | 1.2.10-1 |
| quantal | not-affected | 1.2.10-1 |
| raring | not-affected | 1.2.10-1 |
| saucy | not-affected | 1.2.10-1 |
Показывать по
10
Ссылки на источники
EPSS
Процентиль: 79%
0.01244
Низкий
4.9 Medium
CVSS2
Связанные уязвимости
nvd
больше 13 лет назад
MantisBT before 1.2.9 does not properly check permissions, which allows remote authenticated users with manager privileges to (1) modify or (2) delete global categories.
debian
больше 13 лет назад
MantisBT before 1.2.9 does not properly check permissions, which allow ...
github
больше 3 лет назад
MantisBT before 1.2.9 does not properly check permissions, which allows remote authenticated users with manager privileges to (1) modify or (2) delete global categories.
EPSS
Процентиль: 79%
0.01244
Низкий
4.9 Medium
CVSS2