Описание
The mci_check_login function in api/soap/mc_api.php in the SOAP API in MantisBT before 1.2.9 allows remote attackers to bypass authentication via a null password.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| hardy | ignored | end of life |
| lucid | ignored | end of life |
| maverick | ignored | end of life |
| natty | released | 1.1.8+dfsg-10squeeze2build0.11.04.1 |
| oneiric | ignored | end of life |
| precise | not-affected | 1.2.10-1 |
| quantal | not-affected | 1.2.10-1 |
| raring | not-affected | 1.2.10-1 |
| saucy | not-affected | 1.2.10-1 |
Показывать по
10
Ссылки на источники
EPSS
Процентиль: 89%
0.03727
Низкий
7.5 High
CVSS2
Связанные уязвимости
nvd
около 14 лет назад
The mci_check_login function in api/soap/mc_api.php in the SOAP API in MantisBT before 1.2.9 allows remote attackers to bypass authentication via a null password.
debian
около 14 лет назад
The mci_check_login function in api/soap/mc_api.php in the SOAP API in ...
github
больше 4 лет назад
The mci_check_login function in api/soap/mc_api.php in the SOAP API in MantisBT before 1.2.9 allows remote attackers to bypass authentication via a null password.
EPSS
Процентиль: 89%
0.03727
Низкий
7.5 High
CVSS2