LWN.net Logo

mantis: multiple vulnerabilities

Package(s):mantis CVE #(s):CVE-2008-3331 CVE-2008-3332 CVE-2008-3333
Created:September 22, 2008 Updated:September 24, 2008
Description:

From the Gentoo advisory:

Antonio Parata and Francesco Ongaro reported a Cross-Site Scripting vulnerability in return_dynamic_filters.php (CVE-2008-3331) and an insufficient input validation in adm_config_set.php (CVE-2008-3332). A directory traversal vulnerability in core/lang_api.php (CVE-2008-3333) has also been reported.

Alerts:
Gentoo 200809-10 2008-09-21

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds