Количество 4
Количество 4
CVE-2008-4688
core/string_api.php in Mantis before 1.1.3 does not check the privileges of the viewer before composing a link with issue data in the source anchor, which allows remote attackers to discover an issue's title and status via a request with a modified issue number.
CVE-2008-4688
core/string_api.php in Mantis before 1.1.3 does not check the privileges of the viewer before composing a link with issue data in the source anchor, which allows remote attackers to discover an issue's title and status via a request with a modified issue number.
CVE-2008-4688
core/string_api.php in Mantis before 1.1.3 does not check the privileg ...
GHSA-938w-vx4g-p5w6
core/string_api.php in Mantis before 1.1.3 does not check the privileges of the viewer before composing a link with issue data in the source anchor, which allows remote attackers to discover an issue's title and status via a request with a modified issue number.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2008-4688 core/string_api.php in Mantis before 1.1.3 does not check the privileges of the viewer before composing a link with issue data in the source anchor, which allows remote attackers to discover an issue's title and status via a request with a modified issue number. | CVSS2: 5 | 5% Низкий | больше 17 лет назад | |
CVE-2008-4688 core/string_api.php in Mantis before 1.1.3 does not check the privileges of the viewer before composing a link with issue data in the source anchor, which allows remote attackers to discover an issue's title and status via a request with a modified issue number. | CVSS2: 5 | 5% Низкий | больше 17 лет назад | |
CVE-2008-4688 core/string_api.php in Mantis before 1.1.3 does not check the privileg ... | CVSS2: 5 | 5% Низкий | больше 17 лет назад | |
GHSA-938w-vx4g-p5w6 core/string_api.php in Mantis before 1.1.3 does not check the privileges of the viewer before composing a link with issue data in the source anchor, which allows remote attackers to discover an issue's title and status via a request with a modified issue number. | 5% Низкий | больше 3 лет назад |
Уязвимостей на страницу