Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Mantis Account Update SQL Injection Vulnerability

It has been reported that Mantis is vulnerable to a SQL injection attack. The affected component is 'account_update.php', which is associated with user account modifications. It is confirmed that users may exploit this vulnerability to elevate their Mantis user privileges.







 

Privacy Statement
Copyright 2008, SecurityFocus