4.3

CVE-2004-1730

Exploit

Cross-site scripting (XSS) vulnerability in Mantis bugtracker allows remote attackers to inject arbitrary web script or HTML via (1) the return parameter to login_page.php, (2) e-mail field in signup.php, (3) action parameter to login_select_proj_page.php, or (4) hide_status parameter to view_all_set.php.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
MantisMantis Version0.9
MantisMantis Version0.9.1
MantisMantis Version0.10
MantisMantis Version0.10.1
MantisMantis Version0.10.2
MantisMantis Version0.11
MantisMantis Version0.11.1
MantisMantis Version0.12
MantisMantis Version0.13
MantisMantis Version0.13.1
MantisMantis Version0.14
MantisMantis Version0.14.1
MantisMantis Version0.14.2
MantisMantis Version0.14.3
MantisMantis Version0.14.4
MantisMantis Version0.14.5
MantisMantis Version0.14.6
MantisMantis Version0.14.7
MantisMantis Version0.14.8
MantisMantis Version0.15
MantisMantis Version0.15.1
MantisMantis Version0.15.2
MantisMantis Version0.15.3
MantisMantis Version0.15.4
MantisMantis Version0.15.5
MantisMantis Version0.15.6
MantisMantis Version0.15.7
MantisMantis Version0.15.8
MantisMantis Version0.15.9
MantisMantis Version0.15.10
MantisMantis Version0.15.11
MantisMantis Version0.15.12
MantisMantis Version0.16
MantisMantis Version0.16.0
MantisMantis Version0.16.1
MantisMantis Version0.17
MantisMantis Version0.17.0
MantisMantis Version0.17.1
MantisMantis Version0.17.2
MantisMantis Version0.17.3
MantisMantis Version0.17.4
MantisMantis Version0.17.4a
MantisMantis Version0.17.5
MantisMantis Version0.18
MantisMantis Version0.18.0_rc1
MantisMantis Version0.18.0a2
MantisMantis Version0.18.0a3
MantisMantis Version0.18.0a4
MantisMantis Version0.18a1
MantisMantis Version0.19.0a
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.62% 0.676
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:N/I:P/A:N