4.3
CVE-2013-1930
- EPSS 1.22%
- Veröffentlicht 31.10.2019 20:15:10
- Zuletzt bearbeitet 21.11.2024 01:50:41
- Erkennungen
MantisBT 1.2.12 before 1.2.15 allows authenticated users to by the workflow restriction and close issues.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Fedoraproject ≫ Fedora Version 17
Fedoraproject ≫ Fedora Version 18
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.22% | 0.647 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 4.3 | 2.8 | 1.4 |
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:L/A:N
|
| NIST | 4 | 8 | 2.9 |
AV:N/AC:L/Au:S/C:N/I:P/A:N
|
CWE-20 Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
http://lists.fedoraproject.org/pipermail/package-announce/2013-April/103438.html
http://lists.fedoraproject.org/pipermail/package-announce/2013-April/103459.html
http://www.openwall.com/lists/oss-security/2013/04/06/4
http://www.securityfocus.com/bid/58890
https://bugzilla.redhat.com/show_bug.cgi?id=CVE-2013-1930
https://exchange.xforce.ibmcloud.com/vulnerabilities/83796
https://mantisbt.org/bugs/view.php?id=15453
https://security-tracker.debian.org/tracker/CVE-2013-1930