Lumension® Endpoint Intelligence Center

Intelligence Center » Browse All Vulnerabilities » CVE-2008-4688

Overview

Vulnerability Score 5.0 5.0
CVE Id CVE-2008-4688
Last Modified 10 Feb 2009 01:56:03
Published 22 Oct 2008 02:00:01
Confidentiality Impact PARTIAL PARTIAL
Integrity Impact NONE NONE
Availability Impact NONE NONE
Access Vector NETWORK
Access Complexity LOW
Authentication NONE

CVE-2008-4688

Summary

core/string_api.php in Mantis before 1.1.3 does not check the privileges of the viewer before composing a link with issue data in the source anchor, which allows remote attackers to discover an issue's title and status via a request with a modified issue number.

Vulnerable Systems

Application

  • Mantis 0.19.3

  • Mantis 0.19.4

  • Mantis 1.0.1

  • Mantis 1.0.2

  • Mantis 1.0.3

  • Mantis 1.0.4

  • Mantis 1.0.5

  • Mantis 1.0.6

  • Mantis 1.0.7

  • Mantis 1.0.8

  • Mantis 1.1.1

  • Mantis 1.1.2

  • Mantis 1.1.3


References

BID - 31868

MLIST - [oss-security] 20081020 Re: CVE request: mantisbt < 1.1.4: RCE

CONFIRM - http://www.mantisbt.org/bugs/view.php?id=9321

CONFIRM - http://www.mantisbt.org/bugs/changelog_page.php

GENTOO - GLSA-200812-07

SECUNIA - 32975

SECUNIA - 32243

CONFIRM - http://mantisbt.svn.sourceforge.net/viewvc/mantisbt/branches/BRANCH_1_1_0/mantisbt/core/string_api.php?r1=5285&r2=5384&pathrev=5384


Last Updated: 27 May 2016 10:48:35