Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Hauntit

#50926de 53,634
4.3CVSS total
Vulnerabilidades · 1
PT-2014-2432
4.3
2014-05-15
Mantisbt · Mantisbt · CVE-2013-0197
**Name of the Vulnerable Software and Affected Versions** MantisBT version 1.2.12 **Description** A cross-site scripting issue exists due to a vulnerability in the filter draw selection area2 function. This allows remote attackers to inject arbitrary web script or HTML via the `match type` parameter to the "bugs/search.php" endpoint. **Recommendations** For MantisBT version 1.2.12, update to version 1.2.13 to resolve the issue.