PT-2021-11700 · Mantisbt · Mantisbt

D3Vpoo1

·

Published

2021-01-29

·

Updated

2022-05-24

·

CVE-2020-29605

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions: MantisBT versions prior to 2.24.4
Description: An issue was discovered due to insufficient access-level checks, allowing any logged-in user who can perform Group Actions to access the Summary fields of private Issues via bug arr[] in a crafted bug actiongroup page.php URL. The target Issues can have Private view status or belong to a private Project.
Recommendations: For versions prior to 2.24.4, update to version 2.24.4 or later to resolve the issue. As a temporary workaround, consider restricting access to the bug actiongroup page.php URL or limiting the ability to perform Group Actions to trusted users until a patch is applied.

Exploit

Fix

Incorrect Authorization

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-29605
GHSA-PGG9-MMCG-8MXP

Affected Products

Mantisbt