Lucene search

K
cvelistMitreCVELIST:CVE-2014-9572
HistoryJan 26, 2015 - 3:00 p.m.

CVE-2014-9572

2015-01-2615:00:00
mitre
www.cve.org
7

AI Score

6.1

Confidence

High

EPSS

0.016

Percentile

87.5%

MantisBT before 1.2.19 and 1.3.x before 1.3.0-beta.2 does not properly restrict access to /*/install.php, which allows remote attackers to obtain database credentials via the install parameter with the value 4.

AI Score

6.1

Confidence

High

EPSS

0.016

Percentile

87.5%