Cross-Site Scripting Vulnerabilities in Mantis by MantisBT
CVE-2005-4522

Currently unrated

Key Information:

Vendor

Mantis

Status
Vendor
CVE Published:
28 December 2005

What is CVE-2005-4522?

Multiple cross-site scripting (XSS) vulnerabilities exist in the view_filters_page.php script of Mantis, allowing remote attackers to inject arbitrary web scripts or HTML content. This occurs via the view_type and target_field parameters, which can be exploited to execute malicious scripts in the context of the user's session. It is crucial for users of Mantis to apply the latest updates and patches to mitigate these security risks.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.