Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Tomr

#26741of 53,624
9.5Total CVSS
Vulnerabilities · 2
Medium
2
PT-2019-6861
4.0
2019-10-31
Mantisbt · Mantisbt · CVE-2013-1930
**Name of the Vulnerable Software and Affected Versions** MantisBT versions 1.2.12 through 1.2.14 **Description** The issue allows authenticated users to bypass the workflow restriction and close issues. **Recommendations** For MantisBT versions 1.2.12 through 1.2.14, update to version 1.2.15 or later to resolve the issue.
PT-2012-6002
5.5
2012-11-16
Mantisbt · Mantisbt · CVE-2012-5522
**Name of the Vulnerable Software and Affected Versions** MantisBT versions prior to 1.2.12 **Description** The issue allows remote authenticated users to bypass intended access restrictions and make status changes by leveraging a blank value for a per-status setting. This occurs because MantisBT does not use an expected default value during decisions about whether a user may modify the status of a bug. **Recommendations** For versions prior to 1.2.12, update to version 1.2.12 or later to resolve the issue.