Directory Traversal Vulnerability in Mantis Bug Tracker by MantisBT
CVE-2008-3333

Currently unrated

Key Information:

Vendor

Mantis

Status
Vendor
CVE Published:
27 July 2008

What is CVE-2008-3333?

A directory traversal vulnerability exists in Mantis Bug Tracker versions prior to 1.1.2 that allows remote attackers to manipulate the language parameter in account_prefs_update.php. By exploiting this weakness, attackers can include and execute arbitrary files on the server, potentially compromising the integrity of the application and leading to unauthorized access.

References

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.