MantisBT是MantisBT团队的一套基于Web的开源缺陷跟踪系统。该系统以Web操作的形式提供项目管理及缺陷跟踪服务。 MantisBT中的Move Attachments页面(move_attachments_page.php)存在跨站脚本漏洞。远程攻击者可借助特制的‘type’参数利用该漏洞注入任意的代码。以下版本受到影响:MantisBT 1.2.2版本至1.3.8版本和2.0.0-beta1版本至2.1.2版本,2.2版本至2.2.2版本。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| - | n/a | n/a | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2017-3009 | Adobe Acrobat和Reader 缓冲区错误漏洞 | |
| CVE-2016-9319 | Trend Micro Enterprise Mobile Security Android Application 安全漏洞 | |
| CVE-2017-7363 | Pixie 跨站脚本漏洞 | |
| CVE-2017-7362 | Pixie 跨站脚本漏洞 | |
| CVE-2017-7361 | Pixie 跨站脚本漏洞 | |
| CVE-2017-7360 | Pixie 跨站脚本漏洞 | |
| CVE-2017-7359 | Pixie 跨站脚本漏洞 | |
| CVE-2017-7309 | MantisBT 跨站脚本漏洞 | |
| CVE-2017-6973 | MantisBT 跨站脚本漏洞 | |
| CVE-2017-2647 | Linux kernel 代码问题漏洞 | |
| CVE-2017-3010 | Adobe Acrobat和Reader 安全漏洞 | |
| CVE-2017-7386 | symetrie 跨站脚本漏洞 | |
| CVE-2016-6209 | Nagios 跨站脚本漏洞 | |
| CVE-2015-4624 | Hak5 WiFi Pineapple 安全漏洞 | |
| CVE-2014-9114 | util-linux 安全漏洞 | |
| CVE-2014-5009 | Snoopy 安全漏洞 | |
| CVE-2014-5008 | Snoopy 安全漏洞 | |
| CVE-2014-3931 | MRLG 安全漏洞 | |
| CVE-2008-7313 | Snoopy 安全漏洞 | |
| CVE-2017-7374 | Linux kernel 安全漏洞 |
Showing top 20 of 22 CVEs. View all on vendor page → →
No comments yet