MantisBT 'delete_attachments_threshold()' Function Security Bypass Vulnerability

Bugtraq ID: 53921
Class: Access Validation Error
CVE: CVE-2012-2692
Remote: Yes
Local: No
Published: Mar 07 2012 12:00AM
Updated: Nov 27 2012 11:40AM
Credit: atrol
Vulnerable: Red Hat Fedora 17
Red Hat Fedora 16
Mantisbt Mantisbt 1.2.9
Mantisbt Mantisbt 1.2.8
Mantisbt Mantisbt 1.2.7
Mantisbt Mantisbt 1.2.6
Mantisbt Mantisbt 1.2.4
Mantisbt Mantisbt 1.2.3
Mantisbt Mantisbt 1.1
Mantisbt Mantisbt 1.2.2
Mantisbt Mantisbt 1.2.1
Gentoo Linux
Debian Linux 6.0 sparc
Debian Linux 6.0 s/390
Debian Linux 6.0 powerpc
Debian Linux 6.0 mips
Debian Linux 6.0 ia-64
Debian Linux 6.0 ia-32
Debian Linux 6.0 arm
Debian Linux 6.0 amd64
Not Vulnerable:


 

Privacy Statement
Copyright 2010, SecurityFocus