Vulnerability Database

308,819

Total vulnerabilities in the database

CVE-2018-17783

A cross-site scripting (XSS) vulnerability in the Edit Filter page (manage_filter_edit page.php) in MantisBT 2.1.0 through 2.17.1 allows remote attackers (if access rights permit it) to inject arbitrary code (if CSP settings permit it) through a crafted project name.

  • Published: Oct 30, 2018
  • Updated: Nov 9, 2025
  • CVE: CVE-2018-17783
  • Severity: Low
  • Exploit:

CVSS v2:

  • Severity: Low
  • Score: 3.5
  • AV:N/AC:M/Au:S/C:N/I:P/A:N