Lucene search

K
cvelistMitreCVELIST:CVE-2008-4687
HistoryOct 22, 2008 - 5:00 p.m.

CVE-2008-4687

2008-10-2217:00:00
mitre
www.cve.org
1

7 High

AI Score

Confidence

Low

0.964 High

EPSS

Percentile

99.6%

manage_proj_page.php in Mantis before 1.1.4 allows remote authenticated users to execute arbitrary code via a sort parameter containing PHP sequences, which are processed by create_function within the multi_sort function in core/utility_api.php.

7 High

AI Score

Confidence

Low

0.964 High

EPSS

Percentile

99.6%