Top technology
Linux 13140
Google 12525
Microsoft 12378
Apple 6692
Oracle 6673
Adobe 6383
Ibm 6286
Cisco 5751
Debian 3919
Mozilla 2886
Apache 2864
Redhat 2586
Mantisbt
MEDIUM 6.5
CVE-2020-28413
In MantisBT 2.24.3, SQL Injection can occur in the parameter "access" of the mc_project_get_users function through the API SOAP.
No fix yet
Fix from $1,600
2020-12-30
Mantisbt
MEDIUM 5.4
CVE-2013-1932
A cross-site scripting (XSS) vulnerability in the configuration report page (adm_config_report.php) in MantisBT 1.2.13 allows remote authenticated us…
Mitigation only
Fix from $1,600
2019-10-31
Mantisbt
MEDIUM 5.8
CVE-2015-1042
The string_sanitize_url function in core/string_api.php in MantisBT 1.2.0a3 through 1.2.18 uses an incorrect regular expression, which allows remote …
No fix yet
Fix from $1,600
2015-02-10
Mantisbt
MEDIUM 5.0
CVE-2011-3755
MantisBT 1.2.4 allows remote attackers to obtain sensitive information via a direct request to a .php file, which reveals the installation path in an…
No fix yet
Fix from $1,600
2011-09-23
Mantisbt
MEDIUM 5.0
CVE-2008-3102
Mantis 1.1.x through 1.1.2 and 1.2.x through 1.2.0a2 does not set the secure flag for the session cookie in an https session, which can cause the coo…
Mitigation only
Fix from $1,600
2008-09-24