Mantis 1.0.0rc3 does not properly handle "Make note private" when a bug is being resolved, which has unknown impact and attack vectors, probably related to an information leak.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2005-12-27 17:03
Updated : 2011-03-07 18:28
NVD link : CVE-2005-4524
Mitre link : CVE-2005-4524
JSON object : View
CWE
Products Affected
mantis
- mantis