Gentoo Linux Security Advisory GLSA 200809-10 https://security.gentoo.org/ Severity: High Title: Mantis: Multiple vulnerabilities Date: September 21, 2008 Bugs: #233336 ID: 200809-10
Synopsis
=======
Multiple vulnerabilities have been reported in Mantis.
Background
=========
Mantis is a PHP/MySQL/Web based bugtracking system.
Affected packages
================ ------------------------------------------------------------------- Package / Vulnerable / Unaffected ------------------------------------------------------------------- 1 www-apps/mantisbt < 1.1.2 >= 1.1.2
==========
Antonio Parata and Francesco Ongaro reported a Cross-Site Request
Forgery vulnerability in manage_user_create.php (CVE-2008-2276), a
Cross-Site Scripting vulnerability in return_dynamic_filters.php
(CVE-2008-3331), and a...
style>.gentoo_availability{display:block;}
Get the latest Linux and open source security news straight to your inbox.