Lucene search

K
ubuntucveUbuntu.comUB:CVE-2010-2574
HistoryAug 10, 2010 - 12:00 a.m.

CVE-2010-2574

2010-08-1000:00:00
ubuntu.com
ubuntu.com
13

CVSS2

2.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:H/Au:S/C:N/I:P/A:N

EPSS

0.001

Percentile

48.7%

Cross-site scripting (XSS) vulnerability in manage_proj_cat_add.php in
MantisBT 1.2.2 allows remote authenticated administrators to inject
arbitrary web script or HTML via the name parameter in an Add Category
action.

Bugs

CVSS2

2.1

Attack Vector

NETWORK

Attack Complexity

HIGH

Authentication

SINGLE

Confidentiality Impact

NONE

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:H/Au:S/C:N/I:P/A:N

EPSS

0.001

Percentile

48.7%