CVE Vulnerabilities

CVE-2005-3337

Published: Oct 27, 2005 | Modified: Sep 05, 2008
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

Multiple cross-site scripting (XSS) vulnerabilities in Mantis before 0.19.3 allow remote attackers to inject arbitrary web script or HTML via (1) unknown vectors involving Javascript and (2) mantis/view_all_set.php.

Affected Software

Name Vendor Start Version End Version
Mantis Mantis 0.19.0 (including) 0.19.0 (including)
Mantis Mantis 0.19.0_rc1 (including) 0.19.0_rc1 (including)
Mantis Mantis 0.19.0a1 (including) 0.19.0a1 (including)
Mantis Mantis 0.19.0a2 (including) 0.19.0a2 (including)
Mantis Mantis 0.19.1 (including) 0.19.1 (including)
Mantis Mantis 0.19.2 (including) 0.19.2 (including)
Mantis Mantis 0.19.3 (including) 0.19.3 (including)
Mantis Ubuntu dapper *
Mantis Ubuntu edgy *
Mantis Ubuntu feisty *

References