PHP File Inclusion Vulnerability in Mantis Bug Tracker by MantisBT
CVE-2005-3335

Currently unrated

Key Information:

Vendor

Mantis

Status
Vendor
CVE Published:
27 October 2005

What is CVE-2005-3335?

A vulnerability exists in the bug_sponsorship_list_view_inc.php file of Mantis Bug Tracker, allowing remote attackers to execute arbitrary PHP code by manipulating the t_core_path parameter. This can potentially expose sensitive information or allow the execution of malicious scripts on the server.

References

EPSS Score

6% chance of being exploited in the next 30 days.

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.