Логотип exploitDog
bind:CVE-2012-2692
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2012-2692

Количество 4

Количество 4

ubuntu логотип

CVE-2012-2692

больше 13 лет назад

MantisBT before 1.2.11 does not check the delete_attachments_threshold permission when form_security_validation is set to OFF, which allows remote authenticated users with certain privileges to bypass intended access restrictions and delete arbitrary attachments.

CVSS2: 3.6
EPSS: Низкий
nvd логотип

CVE-2012-2692

больше 13 лет назад

MantisBT before 1.2.11 does not check the delete_attachments_threshold permission when form_security_validation is set to OFF, which allows remote authenticated users with certain privileges to bypass intended access restrictions and delete arbitrary attachments.

CVSS2: 3.6
EPSS: Низкий
debian логотип

CVE-2012-2692

больше 13 лет назад

MantisBT before 1.2.11 does not check the delete_attachments_threshold ...

CVSS2: 3.6
EPSS: Низкий
github логотип

GHSA-xphv-v337-3g8j

больше 3 лет назад

MantisBT before 1.2.11 does not check the delete_attachments_threshold permission when form_security_validation is set to OFF, which allows remote authenticated users with certain privileges to bypass intended access restrictions and delete arbitrary attachments.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2012-2692

MantisBT before 1.2.11 does not check the delete_attachments_threshold permission when form_security_validation is set to OFF, which allows remote authenticated users with certain privileges to bypass intended access restrictions and delete arbitrary attachments.

CVSS2: 3.6
1%
Низкий
больше 13 лет назад
nvd логотип
CVE-2012-2692

MantisBT before 1.2.11 does not check the delete_attachments_threshold permission when form_security_validation is set to OFF, which allows remote authenticated users with certain privileges to bypass intended access restrictions and delete arbitrary attachments.

CVSS2: 3.6
1%
Низкий
больше 13 лет назад
debian логотип
CVE-2012-2692

MantisBT before 1.2.11 does not check the delete_attachments_threshold ...

CVSS2: 3.6
1%
Низкий
больше 13 лет назад
github логотип
GHSA-xphv-v337-3g8j

MantisBT before 1.2.11 does not check the delete_attachments_threshold permission when form_security_validation is set to OFF, which allows remote authenticated users with certain privileges to bypass intended access restrictions and delete arbitrary attachments.

1%
Низкий
больше 3 лет назад

Уязвимостей на страницу