Total vulnerabilities in the database
Mantis before 1.1.0a2 sets the default value of $g_bug_reminder_threshold to "reporter" instead of a more privileged role, which has unknown impact and attack vectors, possibly related to frequency of reminders.
Software | From | Fixed in |
---|---|---|
mantis / mantis | 1.0.6 | 1.0.6.x |
mantis / mantis | 1.0.2 | 1.0.2.x |
mantis / mantis | 1.0.4 | 1.0.4.x |
mantis / mantis | 1.0.0_rc3 | 1.0.0_rc3.x |
mantis / mantis | 1.0.0_rc1 | 1.0.0_rc1.x |
mantis / mantis | 1.0.0_rc2 | 1.0.0_rc2.x |
mantis / mantis | 1.0.0 | 1.0.0.x |
mantis / mantis | 1.0.1 | 1.0.1.x |
mantis / mantis | 1.0.0_rc4 | 1.0.0_rc4.x |
mantis / mantis | 1.0.3 | 1.0.3.x |
mantis / mantis | 1.0.5 | 1.0.5.x |
mantis / mantis | 1.0.0a3 | 1.0.0a3.x |
mantis / mantis | 1.0.0a1 | 1.0.0a1.x |
mantis / mantis | 1.0.0a2 | 1.0.0a2.x |
mantis / mantis | 1.0.0_rc5 | 1.0.0_rc5.x |
mantis / mantis | - | 1.1.0a1.x |