Top technology
Linux 13140
Google 12530
Microsoft 12379
Oracle 6737
Apple 6692
Adobe 6387
Ibm 6330
Cisco 5757
Debian 3919
Mozilla 2895
Apache 2864
Redhat 2592
Mantisbt
MEDIUM 6.5
CVE-2020-28413
In MantisBT 2.24.3, SQL Injection can occur in the parameter "access" of the mc_project_get_users function through the API SOAP.
No fix yet
Fix from $1,600
2020-12-30
Mantisbt
MEDIUM 5.4
CVE-2013-1932
A cross-site scripting (XSS) vulnerability in the configuration report page (adm_config_report.php) in MantisBT 1.2.13 allows remote authenticated us…
Mitigation only
Fix from $1,600
2019-10-31
Mantisbt
MEDIUM 5.8
CVE-2015-1042
The string_sanitize_url function in core/string_api.php in MantisBT 1.2.0a3 through 1.2.18 uses an incorrect regular expression, which allows remote …
No fix yet
Fix from $1,600
2015-02-10
Mantisbt
MEDIUM 5.0
CVE-2011-3755
MantisBT 1.2.4 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an…
No fix yet
Fix from $1,600
2011-09-23
Mantisbt
MEDIUM 5.0
CVE-2008-3102
Mantis 1.1.x through 1.1.2 and 1.2.x through 1.2.0a2 does not set the secure flag for the session cookie in an https session, which can cause the coo…
Mitigation only
Fix from $1,600
2008-09-24