CVE-2014-9280
EUVD-2014-910508.12.2014, 16:59
The current_user_get_bug_filter function in core/current_user_api.php in MantisBT before 1.2.18 allows remote attackers to execute arbitrary PHP code via the filter parameter.
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| mantisbt | mantisbt | 𝑥 ≤ 1.2.17 |
𝑥
= Vulnerable software versions
Ubuntu Releases
References