2024-12-08 03:06:42 +00:00

524 lines
18 KiB
JSON

{
"id": "CVE-2005-4519",
"sourceIdentifier": "cve@mitre.org",
"published": "2005-12-28T01:03:00.000",
"lastModified": "2024-11-21T00:04:27.757",
"vulnStatus": "Modified",
"cveTags": [],
"descriptions": [
{
"lang": "en",
"value": "Multiple SQL injection vulnerabilities in the manage user page (manage_user_page.php) in Mantis 1.0.0rc3 and earlier allow remote attackers to execute arbitrary SQL commands via the (1) prefix and (2) sort parameters to the manage user page (manage_user_page.php), or (3) the sort parameter to view_all_set.php."
}
],
"metrics": {
"cvssMetricV2": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"cvssData": {
"version": "2.0",
"vectorString": "AV:N/AC:L/Au:N/C:P/I:P/A:P",
"baseScore": 7.5,
"accessVector": "NETWORK",
"accessComplexity": "LOW",
"authentication": "NONE",
"confidentialityImpact": "PARTIAL",
"integrityImpact": "PARTIAL",
"availabilityImpact": "PARTIAL"
},
"baseSeverity": "HIGH",
"exploitabilityScore": 10.0,
"impactScore": 6.4,
"acInsufInfo": false,
"obtainAllPrivilege": false,
"obtainUserPrivilege": false,
"obtainOtherPrivilege": true,
"userInteractionRequired": false
}
]
},
"weaknesses": [
{
"source": "nvd@nist.gov",
"type": "Primary",
"description": [
{
"lang": "en",
"value": "NVD-CWE-Other"
}
]
}
],
"configurations": [
{
"nodes": [
{
"operator": "OR",
"negate": false,
"cpeMatch": [
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:*:*:*:*:*:*:*:*",
"versionEndIncluding": "0.19.3",
"matchCriteriaId": "C952E055-D5AC-4C5E-9B7E-CB58247FB795"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:*:*:*:*:*:*:*:*",
"versionEndIncluding": "1.0.0_rc3",
"matchCriteriaId": "6E5E1AE7-A73F-43B2-AA6D-DB700E25880B"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.9:*:*:*:*:*:*:*",
"matchCriteriaId": "0266C2F7-FB20-44EF-B0BB-ECCF055D03A8"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.9.1:*:*:*:*:*:*:*",
"matchCriteriaId": "A21FF02F-982C-429F-A14D-D6E18058DD61"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.10:*:*:*:*:*:*:*",
"matchCriteriaId": "9407F704-FF3C-4976-BE4C-A1DDC16715D0"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.10.1:*:*:*:*:*:*:*",
"matchCriteriaId": "A5173B32-1099-47C9-996B-56DB29456BB9"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.10.2:*:*:*:*:*:*:*",
"matchCriteriaId": "A6CA26FD-9C45-4628-82B7-E37E3EA3E2A2"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.11:*:*:*:*:*:*:*",
"matchCriteriaId": "7B9B4611-C002-40F5-978C-BB90F1A893C3"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.11.1:*:*:*:*:*:*:*",
"matchCriteriaId": "4C7C8B5A-A630-4EDD-A6E8-27D2E1139CF3"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.12:*:*:*:*:*:*:*",
"matchCriteriaId": "B347D6C8-4607-481D-863E-7F41E9868041"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.13:*:*:*:*:*:*:*",
"matchCriteriaId": "4F434D16-4F09-4BCF-BD3E-9114876C2575"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.13.1:*:*:*:*:*:*:*",
"matchCriteriaId": "F6D8FD23-C9A3-40AB-B3ED-86739BA8A362"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.14:*:*:*:*:*:*:*",
"matchCriteriaId": "72BD480B-7CFB-4FD3-8E47-028F32AEF902"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.14.1:*:*:*:*:*:*:*",
"matchCriteriaId": "AC7C781D-F5D1-4C63-B6E3-230DEC80104E"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.14.2:*:*:*:*:*:*:*",
"matchCriteriaId": "D0755FA0-2365-42B4-8E42-214D5BAD71A1"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.14.3:*:*:*:*:*:*:*",
"matchCriteriaId": "35248DDA-D37D-4D72-9FF8-6813BA4C87BE"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.14.4:*:*:*:*:*:*:*",
"matchCriteriaId": "A67C54F4-4155-43DA-8E07-579249759989"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.14.5:*:*:*:*:*:*:*",
"matchCriteriaId": "9DE7BEF1-1522-4666-B6B1-36A308FBC0A3"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.14.6:*:*:*:*:*:*:*",
"matchCriteriaId": "C376D216-914A-4D96-8603-C6861B3E2857"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.14.7:*:*:*:*:*:*:*",
"matchCriteriaId": "CF0636CA-49A5-4463-B22B-6C5E1E2D44AC"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.14.8:*:*:*:*:*:*:*",
"matchCriteriaId": "E3A07B4C-CE12-4381-BFE4-CE79411F5069"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.15:*:*:*:*:*:*:*",
"matchCriteriaId": "DB6E1BE3-BF57-4ED4-918D-8B23CB195ECE"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.15.1:*:*:*:*:*:*:*",
"matchCriteriaId": "BB502B29-FBC5-4984-A735-AA0B6DF4A58D"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.15.2:*:*:*:*:*:*:*",
"matchCriteriaId": "3F759138-7079-471F-B30D-ED62351CFCB9"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.15.3:*:*:*:*:*:*:*",
"matchCriteriaId": "5DF83421-973D-4AC9-BDA3-4161B9CF2D91"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.15.4:*:*:*:*:*:*:*",
"matchCriteriaId": "1633BF3C-89C2-4BEF-9F56-6F19984D3CA3"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.15.5:*:*:*:*:*:*:*",
"matchCriteriaId": "084BD5F4-37F8-4913-8045-769FD81F8C36"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.15.6:*:*:*:*:*:*:*",
"matchCriteriaId": "76B09948-A44C-47D8-A5EC-3873FF36F451"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.15.7:*:*:*:*:*:*:*",
"matchCriteriaId": "89D72C1E-73E5-4F51-9D30-D28026939C57"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.15.8:*:*:*:*:*:*:*",
"matchCriteriaId": "E9EDAA7A-DF0C-4D9E-9D30-0422E4801612"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.15.9:*:*:*:*:*:*:*",
"matchCriteriaId": "2C469C66-B64B-49BD-9D1C-D15F0E9028EF"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.15.10:*:*:*:*:*:*:*",
"matchCriteriaId": "C28223A1-359F-434C-BAAA-82A5F310FA44"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.15.11:*:*:*:*:*:*:*",
"matchCriteriaId": "7BF1F18B-AE36-48F3-B784-5C97B3F2535E"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.15.12:*:*:*:*:*:*:*",
"matchCriteriaId": "F073B8A1-3339-4BF2-B8D1-F6BA5CF9695A"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.16:*:*:*:*:*:*:*",
"matchCriteriaId": "3A62328B-4C77-4FF4-B1D9-BE4A2E5C61FF"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.16.0:*:*:*:*:*:*:*",
"matchCriteriaId": "6DAFD163-7FE7-48FB-8860-7B00B0FFA628"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.16.1:*:*:*:*:*:*:*",
"matchCriteriaId": "03A0C36A-83DF-4E67-BA82-0ACE4D50C7D7"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.17:*:*:*:*:*:*:*",
"matchCriteriaId": "7C074DBE-AFC9-4094-A170-A31D79C139D8"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.17.0:*:*:*:*:*:*:*",
"matchCriteriaId": "53520AA0-E5AB-450A-9D95-E075B552D2E9"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.17.1:*:*:*:*:*:*:*",
"matchCriteriaId": "8462CB86-30B1-43D8-B306-271709423DB2"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.17.2:*:*:*:*:*:*:*",
"matchCriteriaId": "131A96BB-EF2E-4AE2-9334-91CA96222BA2"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.17.3:*:*:*:*:*:*:*",
"matchCriteriaId": "17DC6205-7016-40C3-921A-B5AEC8513CCC"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.17.4:*:*:*:*:*:*:*",
"matchCriteriaId": "721A536A-9626-4BD7-B84A-E3C4074F1217"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.17.4a:*:*:*:*:*:*:*",
"matchCriteriaId": "4D77F95A-0059-4442-8D9D-AA7F101FBBE5"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.17.5:*:*:*:*:*:*:*",
"matchCriteriaId": "89786096-AE1B-491B-8284-DBCC2F6112F0"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.18:*:*:*:*:*:*:*",
"matchCriteriaId": "E0BC255D-6B0F-412D-B639-B9F9656E4839"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.18.0_rc1:*:*:*:*:*:*:*",
"matchCriteriaId": "4B4CFE80-223F-45DA-A9FB-03474F61E027"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.18.0a2:*:*:*:*:*:*:*",
"matchCriteriaId": "8724300D-CBDC-4C66-BF78-038F838C06DF"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.18.0a3:*:*:*:*:*:*:*",
"matchCriteriaId": "B7283A58-EE8E-493F-8E51-C97FF87ECA16"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.18.0a4:*:*:*:*:*:*:*",
"matchCriteriaId": "E3CF3162-EAF8-438C-891A-FD13ECF6D6A6"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.18.2:*:*:*:*:*:*:*",
"matchCriteriaId": "101BF6DC-0F73-41E0-A0EE-BA1EA7397423"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.18.3:*:*:*:*:*:*:*",
"matchCriteriaId": "FCC458D9-12B1-4CF1-980E-BC86E874BBA2"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.18a1:*:*:*:*:*:*:*",
"matchCriteriaId": "2202C65A-33FB-4742-8706-2BDD5B442030"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.19.0:*:*:*:*:*:*:*",
"matchCriteriaId": "5419E3AC-4215-4584-9538-AF790DC9BD5F"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.19.0_rc1:*:*:*:*:*:*:*",
"matchCriteriaId": "D3C48B8F-633E-4D69-A174-26C19829DE98"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.19.0a:*:*:*:*:*:*:*",
"matchCriteriaId": "C1E7658F-A543-46F5-B79D-E0E25B7C574F"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.19.0a1:*:*:*:*:*:*:*",
"matchCriteriaId": "DD259C18-7111-45C9-B6C3-6A5F29998146"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.19.0a2:*:*:*:*:*:*:*",
"matchCriteriaId": "7CBA3B4B-D7E6-4555-969F-66217ACDACDA"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.19.1:*:*:*:*:*:*:*",
"matchCriteriaId": "38BFDCFA-00C8-4B6A-B758-8FD15A122CA2"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:0.19.2:*:*:*:*:*:*:*",
"matchCriteriaId": "6770FDC6-792D-49B2-942B-282F9012D0BE"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:1.0.0_rc1:*:*:*:*:*:*:*",
"matchCriteriaId": "C6DB707C-29DF-442C-BBBE-650182692A33"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:1.0.0_rc2:*:*:*:*:*:*:*",
"matchCriteriaId": "0C420189-4748-465C-96FE-DC89502F7E26"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:1.0.0a1:*:*:*:*:*:*:*",
"matchCriteriaId": "730BE023-C283-4775-915C-79817723917A"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:1.0.0a2:*:*:*:*:*:*:*",
"matchCriteriaId": "337E18A7-07A3-456D-868A-2002F96D7A2A"
},
{
"vulnerable": true,
"criteria": "cpe:2.3:a:mantis:mantis:1.0.0a3:*:*:*:*:*:*:*",
"matchCriteriaId": "84B09B6D-EE4D-4241-B3EF-CBCB03A7F579"
}
]
}
]
}
],
"references": [
{
"url": "http://secunia.com/advisories/18181/",
"source": "cve@mitre.org",
"tags": [
"Patch",
"Vendor Advisory"
]
},
{
"url": "http://secunia.com/advisories/18221",
"source": "cve@mitre.org",
"tags": [
"Vendor Advisory"
]
},
{
"url": "http://secunia.com/advisories/18481",
"source": "cve@mitre.org"
},
{
"url": "http://sourceforge.net/project/shownotes.php?release_id=377932&group_id=14963",
"source": "cve@mitre.org"
},
{
"url": "http://sourceforge.net/project/shownotes.php?release_id=377934&group_id=14963",
"source": "cve@mitre.org"
},
{
"url": "http://www.debian.org/security/2005/dsa-944",
"source": "cve@mitre.org"
},
{
"url": "http://www.gentoo.org/security/en/glsa/glsa-200512-12.xml",
"source": "cve@mitre.org",
"tags": [
"Patch"
]
},
{
"url": "http://www.osvdb.org/22051",
"source": "cve@mitre.org"
},
{
"url": "http://www.osvdb.org/22052",
"source": "cve@mitre.org"
},
{
"url": "http://www.securityfocus.com/bid/16046/",
"source": "cve@mitre.org",
"tags": [
"Patch"
]
},
{
"url": "http://www.trapkit.de/advisories/TKADV2005-11-002.txt",
"source": "cve@mitre.org",
"tags": [
"Exploit",
"Vendor Advisory"
]
},
{
"url": "http://www.vupen.com/english/advisories/2005/3064",
"source": "cve@mitre.org"
},
{
"url": "http://secunia.com/advisories/18181/",
"source": "af854a3a-2127-422b-91ae-364da2661108",
"tags": [
"Patch",
"Vendor Advisory"
]
},
{
"url": "http://secunia.com/advisories/18221",
"source": "af854a3a-2127-422b-91ae-364da2661108",
"tags": [
"Vendor Advisory"
]
},
{
"url": "http://secunia.com/advisories/18481",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://sourceforge.net/project/shownotes.php?release_id=377932&group_id=14963",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://sourceforge.net/project/shownotes.php?release_id=377934&group_id=14963",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.debian.org/security/2005/dsa-944",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.gentoo.org/security/en/glsa/glsa-200512-12.xml",
"source": "af854a3a-2127-422b-91ae-364da2661108",
"tags": [
"Patch"
]
},
{
"url": "http://www.osvdb.org/22051",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.osvdb.org/22052",
"source": "af854a3a-2127-422b-91ae-364da2661108"
},
{
"url": "http://www.securityfocus.com/bid/16046/",
"source": "af854a3a-2127-422b-91ae-364da2661108",
"tags": [
"Patch"
]
},
{
"url": "http://www.trapkit.de/advisories/TKADV2005-11-002.txt",
"source": "af854a3a-2127-422b-91ae-364da2661108",
"tags": [
"Exploit",
"Vendor Advisory"
]
},
{
"url": "http://www.vupen.com/english/advisories/2005/3064",
"source": "af854a3a-2127-422b-91ae-364da2661108"
}
]
}