// For flags

CVE-2006-0841

Mantis Bug Tracker 0.x/1.0 - 'manage_user_page.php?sort' Cross-Site Scripting

Severity Score

4.3
*CVSS v2

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

3
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

Multiple cross-site scripting (XSS) vulnerabilities in Mantis 1.00rc4 and earlier allow remote attackers to inject arbitrary web script or HTML via the (1) hide_status, (2) handler_id, (3) user_monitor, (4) reporter_id, (5) view_type, (6) show_severity, (7) show_category, (8) show_status, (9) show_resolution, (10) show_build, (11) show_profile, (12) show_priority, (13) highlight_changed, (14) relationship_type, and (15) relationship_bug parameters in (a) view_all_set.php; the (16) sort parameter in (b) manage_user_page.php; the (17) view_type parameter in (c) view_filters_page.php; and the (18) title parameter in (d) proj_doc_delete.php. NOTE: item 17 might be subsumed by CVE-2005-4522.

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Medium
Authentication
None
Confidentiality
None
Integrity
Partial
Availability
None
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2006-02-15 First Exploit
  • 2006-02-22 CVE Reserved
  • 2006-02-22 CVE Published
  • 2023-03-07 EPSS Updated
  • 2024-08-07 CVE Updated
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.9
Search vendor "Mantis" for product "Mantis" and version "0.9"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.9.0
Search vendor "Mantis" for product "Mantis" and version "0.9.0"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.9.1
Search vendor "Mantis" for product "Mantis" and version "0.9.1"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.10
Search vendor "Mantis" for product "Mantis" and version "0.10"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.10.0
Search vendor "Mantis" for product "Mantis" and version "0.10.0"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.10.1
Search vendor "Mantis" for product "Mantis" and version "0.10.1"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.10.2
Search vendor "Mantis" for product "Mantis" and version "0.10.2"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.11
Search vendor "Mantis" for product "Mantis" and version "0.11"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.11.0
Search vendor "Mantis" for product "Mantis" and version "0.11.0"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.11.1
Search vendor "Mantis" for product "Mantis" and version "0.11.1"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.12
Search vendor "Mantis" for product "Mantis" and version "0.12"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.12.0
Search vendor "Mantis" for product "Mantis" and version "0.12.0"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.13
Search vendor "Mantis" for product "Mantis" and version "0.13"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.13.0
Search vendor "Mantis" for product "Mantis" and version "0.13.0"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.13.1
Search vendor "Mantis" for product "Mantis" and version "0.13.1"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.14
Search vendor "Mantis" for product "Mantis" and version "0.14"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.14.0
Search vendor "Mantis" for product "Mantis" and version "0.14.0"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.14.1
Search vendor "Mantis" for product "Mantis" and version "0.14.1"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.14.2
Search vendor "Mantis" for product "Mantis" and version "0.14.2"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.14.3
Search vendor "Mantis" for product "Mantis" and version "0.14.3"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.14.4
Search vendor "Mantis" for product "Mantis" and version "0.14.4"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.14.5
Search vendor "Mantis" for product "Mantis" and version "0.14.5"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.14.6
Search vendor "Mantis" for product "Mantis" and version "0.14.6"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.14.7
Search vendor "Mantis" for product "Mantis" and version "0.14.7"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.14.8
Search vendor "Mantis" for product "Mantis" and version "0.14.8"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.15
Search vendor "Mantis" for product "Mantis" and version "0.15"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.15.0
Search vendor "Mantis" for product "Mantis" and version "0.15.0"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.15.1
Search vendor "Mantis" for product "Mantis" and version "0.15.1"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.15.2
Search vendor "Mantis" for product "Mantis" and version "0.15.2"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.16
Search vendor "Mantis" for product "Mantis" and version "0.16"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.16.0
Search vendor "Mantis" for product "Mantis" and version "0.16.0"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.17
Search vendor "Mantis" for product "Mantis" and version "0.17"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.17.0
Search vendor "Mantis" for product "Mantis" and version "0.17.0"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.17.4a
Search vendor "Mantis" for product "Mantis" and version "0.17.4a"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.18
Search vendor "Mantis" for product "Mantis" and version "0.18"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.18.0
Search vendor "Mantis" for product "Mantis" and version "0.18.0"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.18.0_rc1
Search vendor "Mantis" for product "Mantis" and version "0.18.0_rc1"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.18.0a1
Search vendor "Mantis" for product "Mantis" and version "0.18.0a1"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.18.0a2
Search vendor "Mantis" for product "Mantis" and version "0.18.0a2"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.18.0a3
Search vendor "Mantis" for product "Mantis" and version "0.18.0a3"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.18.0a4
Search vendor "Mantis" for product "Mantis" and version "0.18.0a4"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.18.1
Search vendor "Mantis" for product "Mantis" and version "0.18.1"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.18.2
Search vendor "Mantis" for product "Mantis" and version "0.18.2"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.18.3
Search vendor "Mantis" for product "Mantis" and version "0.18.3"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.18a1
Search vendor "Mantis" for product "Mantis" and version "0.18a1"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.19.0
Search vendor "Mantis" for product "Mantis" and version "0.19.0"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.19.0_rc1
Search vendor "Mantis" for product "Mantis" and version "0.19.0_rc1"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.19.0a
Search vendor "Mantis" for product "Mantis" and version "0.19.0a"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.19.0a1
Search vendor "Mantis" for product "Mantis" and version "0.19.0a1"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.19.0a2
Search vendor "Mantis" for product "Mantis" and version "0.19.0a2"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.19.1
Search vendor "Mantis" for product "Mantis" and version "0.19.1"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.19.2
Search vendor "Mantis" for product "Mantis" and version "0.19.2"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.19.3
Search vendor "Mantis" for product "Mantis" and version "0.19.3"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
0.19.4
Search vendor "Mantis" for product "Mantis" and version "0.19.4"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
1.0.0_rc1
Search vendor "Mantis" for product "Mantis" and version "1.0.0_rc1"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
1.0.0_rc2
Search vendor "Mantis" for product "Mantis" and version "1.0.0_rc2"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
1.0.0_rc3
Search vendor "Mantis" for product "Mantis" and version "1.0.0_rc3"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
1.0.0_rc4
Search vendor "Mantis" for product "Mantis" and version "1.0.0_rc4"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
1.0.0a1
Search vendor "Mantis" for product "Mantis" and version "1.0.0a1"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
1.0.0a2
Search vendor "Mantis" for product "Mantis" and version "1.0.0a2"
-
Affected
Mantis
Search vendor "Mantis"
Mantis
Search vendor "Mantis" for product "Mantis"
1.0.0a3
Search vendor "Mantis" for product "Mantis" and version "1.0.0a3"
-
Affected