MantisBT 'mc_issue_attachment_get' SOAP API SQL Injection Vulnerability

Bugtraq ID: 65445
Class: Input Validation Error
CVE: CVE-2014-1608
Remote: Yes
Local: No
Published: Jan 24 2014 12:00AM
Updated: Mar 17 2014 02:35AM
Credit: Martin Herfurt
Vulnerable: Mantisbt Mantisbt 1.2.9
Mantisbt Mantisbt 1.2.8
Mantisbt Mantisbt 1.2.7
Mantisbt Mantisbt 1.2.6
Mantisbt Mantisbt 1.2.4
Mantisbt Mantisbt 1.2.3
Mantisbt Mantisbt 1.1.8
Mantisbt Mantisbt 1.1.7
Mantisbt Mantisbt 1.1.5
Mantisbt Mantisbt 1.2.2
Mantisbt Mantisbt 1.2.1
Mantisbt Mantisbt 1.1.6
Mantisbt Mantisbt 1.1.4
Mantisbt Mantisbt 1.1.2
Mantisbt Mantisbt 1.1.1
Not Vulnerable:


 

Privacy Statement
Copyright 2010, SecurityFocus