Improper Role Configuration in Mantis Bug Tracker by MantisBT
CVE-2006-6515

Currently unrated

Key Information:

Vendor

Mantis

Status
Vendor
CVE Published:
14 December 2006

What is CVE-2006-6515?

A vulnerability exists in Mantis Bug Tracker where the default role for bug reminder settings is set to 'reporter'. This misconfiguration may lead to unintended user access levels, increasing the potential for users to receive reminders based on a frequency that could impact system performance or user experience. The implications of this vulnerability highlight the importance of carefully managing user roles and permissions to mitigate any unknown attack vectors and ensure the overall security of the software.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.