Логотип exploitDog
bind:CVE-2025-46556
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2025-46556

Количество 3

Количество 3

nvd логотип

CVE-2025-46556

3 месяца назад

Mantis Bug Tracker (MantisBT) is an open source issue tracker. Versions 2.27.1 and below allow attackers to permanently corrupt issue activity logs by submitting extremely long notes (tested with 4,788,761 characters) due to a lack of server-side validation of note length. Once such a note is added, the activity stream UI fails to render; therefore, new notes cannot be displayed, effectively breaking all future collaboration on the issue. This issue is fixed in version 2.27.2.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2025-46556

3 месяца назад

Mantis Bug Tracker (MantisBT) is an open source issue tracker. Version ...

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-r3jf-hm7q-qfw5

3 месяца назад

MantisBT Vulnerable to Denial-of-Service (DoS) via Excessive Note Length

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2025-46556

Mantis Bug Tracker (MantisBT) is an open source issue tracker. Versions 2.27.1 and below allow attackers to permanently corrupt issue activity logs by submitting extremely long notes (tested with 4,788,761 characters) due to a lack of server-side validation of note length. Once such a note is added, the activity stream UI fails to render; therefore, new notes cannot be displayed, effectively breaking all future collaboration on the issue. This issue is fixed in version 2.27.2.

CVSS3: 6.5
0%
Низкий
3 месяца назад
debian логотип
CVE-2025-46556

Mantis Bug Tracker (MantisBT) is an open source issue tracker. Version ...

CVSS3: 6.5
0%
Низкий
3 месяца назад
github логотип
GHSA-r3jf-hm7q-qfw5

MantisBT Vulnerable to Denial-of-Service (DoS) via Excessive Note Length

CVSS3: 6.5
0%
Низкий
3 месяца назад

Уязвимостей на страницу