Back to search
CVE-2013-1883
Published: May 27, 2014
Modified: Aug 6, 2024
PUBLISHED
Description
Mantis Bug Tracker (aka MantisBT) 1.2.12 before 1.2.15 allows remote attackers to cause a denial of service (resource consumption) via a filter using a criteria, text search, and the "any condition" match type.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
[oss-security] 20130322 Re: CVE request: MantisBT text search query can crash site
mailing-list
x_refsource_MLIST
https://github.com/mantisbt/mantisbt/commit/d16988c3ca232a7
x_refsource_CONFIRM
mantisbt-filterapi-dos(83347)
vdb-entry
x_refsource_XF
https://bugzilla.redhat.com/show_bug.cgi?id=924340
x_refsource_CONFIRM
http://www.mantisbt.org/bugs/view.php?id=15573
x_refsource_CONFIRM
58626
vdb-entry
x_refsource_BID
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now