HIGH
PHP remote file inclusion vulnerability in Mantis 0.19.0a allows remote attackers to execute arbitrary PHP code by modifying the (1) t_core_path parameter to bug_api.php or (2) t_core_dir parameter to relationship_api.php to reference a URL on a remote web server that contains the code
Published Feb 26, 2005
7.5
HIGHCVSS 2.0
EPSS 1.68%
Description
Affected products
Remediation
Metrics
References (3)
Change history (0)
No recorded changes yet.