4.3

CVE-2005-4238

Exploit

Cross-site scripting (XSS) vulnerability in view_filters_page.php in Mantis 1.0.0rc3 and earlier allows remote attackers to inject arbitrary web script or HTML via the target_field parameter.

Data is provided by the National Vulnerability Database (NVD)
MantisMantis Version0.9
MantisMantis Version0.9.1
MantisMantis Version0.10
MantisMantis Version0.10.1
MantisMantis Version0.10.2
MantisMantis Version0.11
MantisMantis Version0.11.1
MantisMantis Version0.12
MantisMantis Version0.13
MantisMantis Version0.13.1
MantisMantis Version0.14
MantisMantis Version0.14.1
MantisMantis Version0.14.2
MantisMantis Version0.14.3
MantisMantis Version0.14.4
MantisMantis Version0.14.5
MantisMantis Version0.14.6
MantisMantis Version0.14.7
MantisMantis Version0.14.8
MantisMantis Version0.15
MantisMantis Version0.15.1
MantisMantis Version0.15.2
MantisMantis Version0.15.3
MantisMantis Version0.15.4
MantisMantis Version0.15.5
MantisMantis Version0.15.6
MantisMantis Version0.15.7
MantisMantis Version0.15.8
MantisMantis Version0.15.9
MantisMantis Version0.15.10
MantisMantis Version0.15.11
MantisMantis Version0.15.12
MantisMantis Version0.16
MantisMantis Version0.16.0
MantisMantis Version0.16.1
MantisMantis Version0.17
MantisMantis Version0.17.0
MantisMantis Version0.17.1
MantisMantis Version0.17.2
MantisMantis Version0.17.3
MantisMantis Version0.17.4
MantisMantis Version0.17.4a
MantisMantis Version0.17.5
MantisMantis Version0.18
MantisMantis Version0.18.0_rc1
MantisMantis Version0.18.0a2
MantisMantis Version0.18.0a3
MantisMantis Version0.18.0a4
MantisMantis Version0.18.2
MantisMantis Version0.18.3
MantisMantis Version0.18a1
MantisMantis Version0.19.0
MantisMantis Version0.19.0_rc1
MantisMantis Version0.19.0a
MantisMantis Version0.19.0a1
MantisMantis Version0.19.0a2
MantisMantis Version0.19.1
MantisMantis Version0.19.2
MantisMantis Version0.19.3
MantisMantis Version1.0.0_rc1
MantisMantis Version1.0.0_rc2
MantisMantis Version1.0.0_rc3
MantisMantis Version1.0.0a1
MantisMantis Version1.0.0a2
MantisMantis Version1.0.0a3
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 4.25% 0.877
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:N/I:P/A:N