Lucene search

K
nessusTenable8905.PRM
HistoryFeb 18, 2015 - 12:00 a.m.

MantisBT 1.2.x < 1.2.18 Multiple Vulnerabilities

2015-02-1800:00:00
Tenable
www.tenable.com
26

CVSS2

5.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:P/A:N

EPSS

0.008

Percentile

82.4%

The remote web server is hosting MantisBT, an open source bug tracking application written in PHP.

Versions of MantisBT 1.2.x prior to 1.2.18 are affected by the following vulnerabilities :

  • An error exists in the file ‘core/string_api.php’ that could allow open redirect attacks. (CVE-2014-6316)

  • An input validation flaw exists in ‘helper_api.php’ when the ‘extended project browser’ mode is enabled. This affects the ‘project’ cookie parameter, which could allow remote attackers to inject arbitrary web script or HTML into the page. (CVE-2014-9269)

  • An input validation error exists in the ‘string_insert_href’ function affecting the URL protocol, allowing a remote attacker to perform cross-site scripting attacks via the ‘javascript://’ protocol. (CVE-2014-9272)

Binary data 8905.prm

CVSS2

5.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:P/A:N

EPSS

0.008

Percentile

82.4%