Vulnerability   
Search   
    Search 202850 CVE descriptions
and 87302 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.51733
Category:CGI abuses
Title:Mantis multiple vulnerabilities
Summary:NOSUMMARY
Description:Description:

Mantis suffers from a dual vulnerability that allows
remote attackers to access arbitrary files on your
system, as well as possible execute abritrary commands
on your system with the priviledges of the web server
process.

If you are running version 0.17.2 or earlier, please
be advised that these versions also suffer from
an SQL injection attack vulnerability in the
'account_update.php' file.

Solution: Upgrade to version 0.17.4 or later.

Risk factor : High

Cross-Ref: BugTraq ID: 5509
BugTraq ID: 5510
CopyrightCopyright (c) 2005 E-Soft Inc. http://www.securityspace.com

This is only one of 87302 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2021 E-Soft Inc. All rights reserved.