Unknown
CVE-2004-1730
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below:
Add References:
Unknown
(0 users assessed)Unknown
(0 users assessed)Unknown
Unknown
Unknown
MITRE ATT&CK
Collection
Command and Control
Credential Access
Defense Evasion
Discovery
Execution
Exfiltration
Impact
Initial Access
Lateral Movement
Persistence
Privilege Escalation
Topic Tags
Description
Cross-site scripting (XSS) vulnerability in Mantis bugtracker allows remote attackers to inject arbitrary web script or HTML via (1) the return parameter to login_page.php, (2) e-mail field in signup.php, (3) action parameter to login_select_proj_page.php, or (4) hide_status parameter to view_all_set.php.
Add Assessment
No one has assessed this topic. Be the first to add your voice to the community.
CVSS V3 Severity and Metrics
General Information
Vendors
Products
- mantis 0.10,
- mantis 0.10.1,
- mantis 0.10.2,
- mantis 0.11,
- mantis 0.11.1,
- mantis 0.12,
- mantis 0.13,
- mantis 0.13.1,
- mantis 0.14,
- mantis 0.14.1,
- mantis 0.14.2,
- mantis 0.14.3,
- mantis 0.14.4,
- mantis 0.14.5,
- mantis 0.14.6,
- mantis 0.14.7,
- mantis 0.14.8,
- mantis 0.15,
- mantis 0.15.1,
- mantis 0.15.10,
- mantis 0.15.11,
- mantis 0.15.12,
- mantis 0.15.2,
- mantis 0.15.3,
- mantis 0.15.4,
- mantis 0.15.5,
- mantis 0.15.6,
- mantis 0.15.7,
- mantis 0.15.8,
- mantis 0.15.9,
- mantis 0.16,
- mantis 0.16.0,
- mantis 0.16.1,
- mantis 0.17,
- mantis 0.17.0,
- mantis 0.17.1,
- mantis 0.17.2,
- mantis 0.17.3,
- mantis 0.17.4,
- mantis 0.17.4a,
- mantis 0.17.5,
- mantis 0.18,
- mantis 0.18.0 rc1,
- mantis 0.18.0a2,
- mantis 0.18.0a3,
- mantis 0.18.0a4,
- mantis 0.18a1,
- mantis 0.19.0a,
- mantis 0.9,
- mantis 0.9.1
Weaknesses
References
Advisory
Additional Info
Technical Analysis
Report as Emergent Threat Response
Report as Zero-day Exploit
Report as Exploited in the Wild
CVE ID
AttackerKB requires a CVE ID in order to pull vulnerability data and references from the CVE list and the National Vulnerability Database. If available, please supply below: