VYPR

Mantis Bug Tracker

by MantisBugTracker

Source repositories

CVEs (2)

  • CVE-2004-1731Aug 20, 2004
    risk 0.04cvss epss 0.07

    signup_page.php in Mantis bugtracker allows remote attackers to send e-mail bombs by creating multiple users and providing the same e-mail address.

  • CVE-2004-1730Dec 31, 2004
    risk 0.00cvss epss 0.01

    Cross-site scripting (XSS) vulnerability in Mantis bugtracker allows remote attackers to inject arbitrary web script or HTML via (1) the return parameter to login_page.php, (2) e-mail field in signup.php, (3) action parameter to login_select_proj_page.php, or (4) hide_status…